Medium severity5.3NVD Advisory· Published Oct 5, 2023· Updated Jun 17, 2026
CVE-2023-44386
CVE-2023-44386
Description
Vapor is an HTTP web framework for Swift. There is a denial of service vulnerability impacting all users of affected versions of Vapor. The HTTP1 error handler closed connections when HTTP parse errors occur instead of passing them on. The issue is fixed as of Vapor release 4.84.2.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
github.com/vapor/vaporSwiftURL | >= 4.83.2, < 4.84.2 | 4.84.2 |
Affected products
2Patches
Vulnerability mechanics
References
5- github.com/vapor/vapor/commit/090464a654b03148b139a81f8f5ac63b0856f6f3nvdPatchWEB
- github.com/advisories/GHSA-3mwq-h3g6-ffhmghsaADVISORY
- github.com/vapor/vapor/security/advisories/GHSA-3mwq-h3g6-ffhmnvdThird Party AdvisoryWEB
- nvd.nist.gov/vuln/detail/CVE-2023-44386ghsaADVISORY
- github.com/vapor/vapor/releases/tag/4.84.2nvdRelease NotesWEB
News mentions
0No linked articles in our index yet.