Security: nanomsg/nng
Security
No security policy detected
This project has not set up a SECURITY.md file yet.
Report a vulnerability-
Unaccounted zero-length WebSocket fragments cause per-frame heap retention and conditional quadratic receive processing in NNG message modeGHSA-r6hp-gmf7-9pqq published
Aug 27, 2026 by gdamoreModerate -
Integer overflow in nni_msg_alloc causes remote process abort via SP protocolGHSA-8rrv-25fw-rm86 published
Aug 27, 2026 by gdamoreHigh -
Path traversal in HTTP directory handler allows arbitrary file readGHSA-rv5j-2q4p-qm56 published
Aug 27, 2026 by gdamoreHigh -
Integer overflow in HTTP chunked-transfer parser leads to heap out-of-bounds read in nng HTTP client / WebSocket transportGHSA-cmhr-c7mj-hgx7 published
Aug 27, 2026 by gdamoreHigh
Learn more about advisories related to nanomsg/nng in the GitHub Advisory Database