CVE-2020-25887: Cesanta Mongoose

High severity, CVSS 8.8. EPSS: 0.7% chance of exploitation in the next 30 days.

Buffer overflow in mg_resolve_from_hosts_file in Mongoose 6.18, when reading from a crafted hosts file.

Affected products

  • Cesanta Mongoose: version 6.18 only

Published 2023-08-22. Last modified 2026-06-17.