CVE-2026-73258 | Cesanta Mongoose up to 7.21 src/http.c mg_http_next_multipart crlf injection

SecurityVulns

A vulnerability described as critical has been identified in Cesanta Mongoose up to 7.21. This issue affects the function mg_http_next_multipart of the file src/http.c. The manipulation results in crlf injection.

This vulnerability is cataloged as CVE-2026-73258. The attack may be launched remotely. There is no exploit available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More