CVE-2024-24263: Chendotjs Lotos Webserver

High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.

Lotos WebServer v0.1.1 was discovered to contain a Use-After-Free (UAF) vulnerability via the response_append_status_line function at /lotos/src/response.c.

Affected products

  • Chendotjs Lotos Webserver: version 0.1.1 only

Published 2024-02-05. Last modified 2026-06-17.