All 3 CVE vulnerabilities found in @fastify/middie, with AI-generated Chinese analysis, references, and POCs.
Vendor: @fastify/middie
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-33804 | @fastify/middie vulnerable to middleware bypass via deprecated ignoreDuplicateSlashes option CWE-436 | 7.4 | High | 2026-04-16 |
| CVE-2026-6270 | @fastify/middie vulnerable to middleware authentication bypass in child plugin scopes CWE-436 | 9.1 | Critical | 2026-04-16 |
| CVE-2026-2880 | @fastify/middie has an improper path normalization vulnerability CWE-20 | 9.8 | - | 2026-02-27 |
All 3 known CVE vulnerabilities affecting @fastify/middie with full Chinese analysis, references, and POCs where available.