CVE-2024-42383: Cesanta Mongoose
Critical severity, CVSS 9.8. EPSS: 0.3% chance of exploitation in the next 30 days.
Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows to write a NULL byte value beyond the memory space dedicated for the hostname field.
Affected products
- Cesanta Mongoose: up to and including 7.14
Published 2024-11-18. Last modified 2026-06-17.