CVE-2026-42371: Uriparser Project Uriparser

Medium severity, CVSS 5.1. EPSS: 0.2% chance of exploitation in the next 30 days.

uriparser before 1.0.1 has numeric truncation in text range comparison, if an application accepts URIs with a length in gigabytes.

Affected products

Published 2026-04-27. Last modified 2026-06-17.