CVE-2025-53628: Yhirose Cpp-Httplib

High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.

cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. Prior to 0.20.1, cpp-httplib does not have a limit for a unique line, permitting an attacker to explore this to allocate memory arbitrarily. This vulnerability is fixed in 0.20.1. NOTE: This vulnerability is related to CVE-2025-53629.

Affected products

  • Yhirose Cpp-Httplib: before 0.20.1 (fixed in 0.20.1)

Published 2025-07-10. Last modified 2026-06-17.