Loading
Hyperium Hyper before 0.14.19 does not allow for customization of the max_header_list_size method in the H2 third-party software, allowing attackers to perform HTTP2 attacks.
Cite this page
CVE-2022-31394. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2022-31394
Use CWE-770, Hyper vendor hub and Hyper product page to widen CVE-2022-31394 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2020-35863, CVE-2023-26964 and CVE-2021-32714 for nearby disclosures in the same product family.