CWE-135: Incorrect Calculation of Multi-Byte String Length
The product does not correctly calculate the length of strings that can contain wide or multi-byte characters.
2 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2026-0810 — Gix-date: gix-date: undefined behavior due to invalid string generation
- CVE-2026-34831 — Rack: Content-Length mismatch in Rack::Files error responses
Recently published
- CVE-2026-34831 — Rack: Content-Length mismatch in Rack::Files error responses
- CVE-2026-0810 — Gix-date: gix-date: undefined behavior due to invalid string generation