CVE-2020-35884: Fedoraproject Fedora
Medium severity, CVSS 6.5. EPSS: 1.1% chance of exploitation in the next 30 days.
An issue was discovered in the tiny_http crate through 2020-06-16 for Rust. HTTP Request smuggling can occur via a malformed Transfer-Encoding header.
Affected products
- Fedoraproject Fedora: version 34 only; version 35 only
- Tiny-HTTP Project Tiny-HTTP: up to and including 0.7.0
Published 2020-12-31. Last modified 2026-06-17.