Stack Overflow Vulnerability in cpp-httplib Affects C++ HTTP Library
CVE-2026-29076
5.9MEDIUM
What is CVE-2026-29076?
The cpp-httplib library, a single-file header-only C++ HTTP/HTTPS solution, contains a vulnerability that allows attackers to trigger uncontrolled stack growth through crafted filename* parameters in multipart Content-Disposition headers. This occurs due to the regex parsing mechanism in the library which relies on deep recursion, leading to a stack overflow and potential crash of the server process. This issue affects all versions prior to 0.37.0, which contains a fix to bolster the security against such exploits.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
cpp-httplib < 0.37.0
