CVE-2026-28435 | yhirose cpp-httplib up to 0.34.x Request Body httplib.h set_payload_max_length resource consumption (GHSA-xvfx-w463-6fpp)
A vulnerability was found in yhirose cpp-httplib up to 0.34.x and classified as problematic. Affected is the function Server::set_payload_max_length in the library httplib.h of the component Request Body Handler. Such manipulation leads to resource consumption.
This vulnerability is uniquely identified as CVE-2026-28435. The attack can be launched remotely. No exploit exists.
It is suggested to upgrade the affected component.