26
Security score
3 known advisories in v1.0.1
OpenSSF Scorecard 7.6/10
Weekly downloads
—
Unpacked size
148.1 kB
Dependencies
3
Last publish
7 years ago
Security advisories
- llhttp allows HTTP Request Smuggling via Flawed Parsing of Transfer-Encodingcritical
GHSA-5689-v88g-g6rv · fixed in 6.0.7
- llhttp vulnerable to HTTP request smugglinghigh
GHSA-cggh-pq45-6h9x · fixed in 8.1.1
- llhttp allows HTTP Request Smuggling via Improper Delimiting of Header Fieldscritical
GHSA-q5vx-44v4-gch4 · fixed in 6.0.7
OpenSSF ScorecardJul 20, 2026
- Code-Review0
- Dangerous-Workflow10
- Maintained10
- Binary-Artifacts10
- Token-Permissions10
- CII-Best-Practices0
- Pinned-Dependencies10
- Fuzzing10
- License10
- Security-Policy10
- Branch-Protection0
- SAST10