osv:CLEANSTART-2026-HI60053

undici's retry interceptor can deliver a response whose body length does not match the Content-Length header exposed to the application a…

none

Description

CVE-2026-16728 affects multiple packages. undici's retry interceptor can deliver a response whose body length does not match the Content-Length header exposed to the application after a retry or resume of a partial response. See references for individual vulnerability details.

Source: OSV

Metrics

Show all metrics
Severity
none
no public PoC known
Published
2026-10-08 00:44 UTC