VYPR

rpm package

opensuse/perl-Starman&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/perl-Starman&distro=openSUSE%20Tumbleweed

Vulnerabilities (1)

  • CVE-2026-40560HigApr 29, 2026
    affected < 0.4018-1.1fixed 0.4018-1.1

    Starman versions before 0.4018 for Perl allows HTTP Request Smuggling via Improper Header Precedence. Starman incorrectly prioritizes "Content-Length" over "Transfer-Encoding: chunked" when both headers are present in an HTTP request. Per RFC 7230 3.3.3, Transfer-Encoding must t