Fastify Fastify/reply-from — known CVE vulnerabilities
Every CVE whose affected-product data names Fastify Fastify/reply-from, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (1)
CVE-2026-16158 — CVSS 8.7 (high): Impact: @fastify/reply-from versions from 8.3.1 up to but not including 12.6.4 build the internal URL cache key by concatenating the…