amphp/http
Basic HTTP primitives which can be shared by servers and clients.
Activity
- Latest release
- 1y ago
- Total releases
- 23
- Cadence
- ~2 months
- Last 12 months
- 0
Reach
- Stars
- —
Details
- License
- MIT
- First release
- Jan 22, 2018
| Version | Released | |
|---|---|---|
v2.1.2
patch
| ||
v2.1.1
patch
| ||
v1.7.3
patch
| ||
v1.7.2
patch
1 CVE
CVE-2024-2653
GHSA-qjfw-cvjf-f4fm
Apr 03, 2024
AMPHP Denial of Service via HTTP/2 CONTINUATION Frames
8.2
/ 10
High
Network
Low
None
None
Unchanged
None
Low
High
AcknowledgementsThank you to Bartek Nowotarski for reporting the vulnerability. Affected versions
v2.0.0
v2.1.0
v1.0.0
v1.0.1
v1.1.0
v1.2.0
v1.3.0
v1.4.0
v1.5.0
v1.6.0
v1.6.0-rc1
v1.6.1
+ 5 more Show less
v1.6.2
v1.6.3
v1.7.0
v1.7.1
v1.7.2
Fixed in
1.7.3
2.1.1
References
Updated Jul 08, 2026 · Source: OSV.dev | ||
v2.1.0
minor
1 CVE
CVE-2024-2653
GHSA-qjfw-cvjf-f4fm
Apr 03, 2024
AMPHP Denial of Service via HTTP/2 CONTINUATION Frames
8.2
/ 10
High
Network
Low
None
None
Unchanged
None
Low
High
AcknowledgementsThank you to Bartek Nowotarski for reporting the vulnerability. Affected versions
v2.0.0
v2.1.0
v1.0.0
v1.0.1
v1.1.0
v1.2.0
v1.3.0
v1.4.0
v1.5.0
v1.6.0
v1.6.0-rc1
v1.6.1
+ 5 more Show less
v1.6.2
v1.6.3
v1.7.0
v1.7.1
v1.7.2
Fixed in
1.7.3
2.1.1
References
Updated Jul 08, 2026 · Source: OSV.dev | ||
v2.0.0
major
1 CVE
CVE-2024-2653
GHSA-qjfw-cvjf-f4fm
Apr 03, 2024
AMPHP Denial of Service via HTTP/2 CONTINUATION Frames
8.2
/ 10
High
Network
Low
None
None
Unchanged
None
Low
High
AcknowledgementsThank you to Bartek Nowotarski for reporting the vulnerability. Affected versions
v2.0.0
v2.1.0
v1.0.0
v1.0.1
v1.1.0
v1.2.0
v1.3.0
v1.4.0
v1.5.0
v1.6.0
v1.6.0-rc1
v1.6.1
+ 5 more Show less
v1.6.2
v1.6.3
v1.7.0
v1.7.1
v1.7.2
Fixed in
1.7.3
2.1.1
References
Updated Jul 08, 2026 · Source: OSV.dev | ||
v2.0.0-beta.3
pre
| ||
v2.0.0-beta.2
pre
| ||
v2.0.0-beta.1
pre
| ||
v1.7.1
patch
1 CVE
CVE-2024-2653
GHSA-qjfw-cvjf-f4fm
Apr 03, 2024
AMPHP Denial of Service via HTTP/2 CONTINUATION Frames
8.2
/ 10
High
Network
Low
None
None
Unchanged
None
Low
High
AcknowledgementsThank you to Bartek Nowotarski for reporting the vulnerability. Affected versions
v2.0.0
v2.1.0
v1.0.0
v1.0.1
v1.1.0
v1.2.0
v1.3.0
v1.4.0
v1.5.0
v1.6.0
v1.6.0-rc1
v1.6.1
+ 5 more Show less
v1.6.2
v1.6.3
v1.7.0
v1.7.1
v1.7.2
Fixed in
1.7.3
2.1.1
References
Updated Jul 08, 2026 · Source: OSV.dev | ||
v1.7.0
minor
1 CVE
CVE-2024-2653
GHSA-qjfw-cvjf-f4fm
Apr 03, 2024
AMPHP Denial of Service via HTTP/2 CONTINUATION Frames
8.2
/ 10
High
Network
Low
None
None
Unchanged
None
Low
High
AcknowledgementsThank you to Bartek Nowotarski for reporting the vulnerability. Affected versions
v2.0.0
v2.1.0
v1.0.0
v1.0.1
v1.1.0
v1.2.0
v1.3.0
v1.4.0
v1.5.0
v1.6.0
v1.6.0-rc1
v1.6.1
+ 5 more Show less
v1.6.2
v1.6.3
v1.7.0
v1.7.1
v1.7.2
Fixed in
1.7.3
2.1.1
References
Updated Jul 08, 2026 · Source: OSV.dev | ||
v1.6.3
patch
1 CVE
CVE-2024-2653
GHSA-qjfw-cvjf-f4fm
Apr 03, 2024
AMPHP Denial of Service via HTTP/2 CONTINUATION Frames
8.2
/ 10
High
Network
Low
None
None
Unchanged
None
Low
High
AcknowledgementsThank you to Bartek Nowotarski for reporting the vulnerability. Affected versions
v2.0.0
v2.1.0
v1.0.0
v1.0.1
v1.1.0
v1.2.0
v1.3.0
v1.4.0
v1.5.0
v1.6.0
v1.6.0-rc1
v1.6.1
+ 5 more Show less
v1.6.2
v1.6.3
v1.7.0
v1.7.1
v1.7.2
Fixed in
1.7.3
2.1.1
References
Updated Jul 08, 2026 · Source: OSV.dev | ||
v1.6.2
patch
1 CVE
CVE-2024-2653
GHSA-qjfw-cvjf-f4fm
Apr 03, 2024
AMPHP Denial of Service via HTTP/2 CONTINUATION Frames
8.2
/ 10
High
Network
Low
None
None
Unchanged
None
Low
High
AcknowledgementsThank you to Bartek Nowotarski for reporting the vulnerability. Affected versions
v2.0.0
v2.1.0
v1.0.0
v1.0.1
v1.1.0
v1.2.0
v1.3.0
v1.4.0
v1.5.0
v1.6.0
v1.6.0-rc1
v1.6.1
+ 5 more Show less
v1.6.2
v1.6.3
v1.7.0
v1.7.1
v1.7.2
Fixed in
1.7.3
2.1.1
References
Updated Jul 08, 2026 · Source: OSV.dev | ||
v1.6.1
patch
1 CVE
CVE-2024-2653
GHSA-qjfw-cvjf-f4fm
Apr 03, 2024
AMPHP Denial of Service via HTTP/2 CONTINUATION Frames
8.2
/ 10
High
Network
Low
None
None
Unchanged
None
Low
High
AcknowledgementsThank you to Bartek Nowotarski for reporting the vulnerability. Affected versions
v2.0.0
v2.1.0
v1.0.0
v1.0.1
v1.1.0
v1.2.0
v1.3.0
v1.4.0
v1.5.0
v1.6.0
v1.6.0-rc1
v1.6.1
+ 5 more Show less
v1.6.2
v1.6.3
v1.7.0
v1.7.1
v1.7.2
Fixed in
1.7.3
2.1.1
References
Updated Jul 08, 2026 · Source: OSV.dev | ||
v1.6.0
minor
1 CVE
CVE-2024-2653
GHSA-qjfw-cvjf-f4fm
Apr 03, 2024
AMPHP Denial of Service via HTTP/2 CONTINUATION Frames
8.2
/ 10
High
Network
Low
None
None
Unchanged
None
Low
High
AcknowledgementsThank you to Bartek Nowotarski for reporting the vulnerability. Affected versions
v2.0.0
v2.1.0
v1.0.0
v1.0.1
v1.1.0
v1.2.0
v1.3.0
v1.4.0
v1.5.0
v1.6.0
v1.6.0-rc1
v1.6.1
+ 5 more Show less
v1.6.2
v1.6.3
v1.7.0
v1.7.1
v1.7.2
Fixed in
1.7.3
2.1.1
References
Updated Jul 08, 2026 · Source: OSV.dev | ||
v1.6.0-rc1
pre
1 CVE
CVE-2024-2653
GHSA-qjfw-cvjf-f4fm
Apr 03, 2024
AMPHP Denial of Service via HTTP/2 CONTINUATION Frames
8.2
/ 10
High
Network
Low
None
None
Unchanged
None
Low
High
AcknowledgementsThank you to Bartek Nowotarski for reporting the vulnerability. Affected versions
v2.0.0
v2.1.0
v1.0.0
v1.0.1
v1.1.0
v1.2.0
v1.3.0
v1.4.0
v1.5.0
v1.6.0
v1.6.0-rc1
v1.6.1
+ 5 more Show less
v1.6.2
v1.6.3
v1.7.0
v1.7.1
v1.7.2
Fixed in
1.7.3
2.1.1
References
Updated Jul 08, 2026 · Source: OSV.dev | ||
v1.5.0
minor
1 CVE
CVE-2024-2653
GHSA-qjfw-cvjf-f4fm
Apr 03, 2024
AMPHP Denial of Service via HTTP/2 CONTINUATION Frames
8.2
/ 10
High
Network
Low
None
None
Unchanged
None
Low
High
AcknowledgementsThank you to Bartek Nowotarski for reporting the vulnerability. Affected versions
v2.0.0
v2.1.0
v1.0.0
v1.0.1
v1.1.0
v1.2.0
v1.3.0
v1.4.0
v1.5.0
v1.6.0
v1.6.0-rc1
v1.6.1
+ 5 more Show less
v1.6.2
v1.6.3
v1.7.0
v1.7.1
v1.7.2
Fixed in
1.7.3
2.1.1
References
Updated Jul 08, 2026 · Source: OSV.dev | ||
v1.4.0
minor
1 CVE
CVE-2024-2653
GHSA-qjfw-cvjf-f4fm
Apr 03, 2024
AMPHP Denial of Service via HTTP/2 CONTINUATION Frames
8.2
/ 10
High
Network
Low
None
None
Unchanged
None
Low
High
AcknowledgementsThank you to Bartek Nowotarski for reporting the vulnerability. Affected versions
v2.0.0
v2.1.0
v1.0.0
v1.0.1
v1.1.0
v1.2.0
v1.3.0
v1.4.0
v1.5.0
v1.6.0
v1.6.0-rc1
v1.6.1
+ 5 more Show less
v1.6.2
v1.6.3
v1.7.0
v1.7.1
v1.7.2
Fixed in
1.7.3
2.1.1
References
Updated Jul 08, 2026 · Source: OSV.dev | ||
v1.3.0
minor
1 CVE
CVE-2024-2653
GHSA-qjfw-cvjf-f4fm
Apr 03, 2024
AMPHP Denial of Service via HTTP/2 CONTINUATION Frames
8.2
/ 10
High
Network
Low
None
None
Unchanged
None
Low
High
AcknowledgementsThank you to Bartek Nowotarski for reporting the vulnerability. Affected versions
v2.0.0
v2.1.0
v1.0.0
v1.0.1
v1.1.0
v1.2.0
v1.3.0
v1.4.0
v1.5.0
v1.6.0
v1.6.0-rc1
v1.6.1
+ 5 more Show less
v1.6.2
v1.6.3
v1.7.0
v1.7.1
v1.7.2
Fixed in
1.7.3
2.1.1
References
Updated Jul 08, 2026 · Source: OSV.dev | ||
v1.2.0
minor
1 CVE
CVE-2024-2653
GHSA-qjfw-cvjf-f4fm
Apr 03, 2024
AMPHP Denial of Service via HTTP/2 CONTINUATION Frames
8.2
/ 10
High
Network
Low
None
None
Unchanged
None
Low
High
AcknowledgementsThank you to Bartek Nowotarski for reporting the vulnerability. Affected versions
v2.0.0
v2.1.0
v1.0.0
v1.0.1
v1.1.0
v1.2.0
v1.3.0
v1.4.0
v1.5.0
v1.6.0
v1.6.0-rc1
v1.6.1
+ 5 more Show less
v1.6.2
v1.6.3
v1.7.0
v1.7.1
v1.7.2
Fixed in
1.7.3
2.1.1
References
Updated Jul 08, 2026 · Source: OSV.dev | ||
v1.1.0
minor
1 CVE
CVE-2024-2653
GHSA-qjfw-cvjf-f4fm
Apr 03, 2024
AMPHP Denial of Service via HTTP/2 CONTINUATION Frames
8.2
/ 10
High
Network
Low
None
None
Unchanged
None
Low
High
AcknowledgementsThank you to Bartek Nowotarski for reporting the vulnerability. Affected versions
v2.0.0
v2.1.0
v1.0.0
v1.0.1
v1.1.0
v1.2.0
v1.3.0
v1.4.0
v1.5.0
v1.6.0
v1.6.0-rc1
v1.6.1
+ 5 more Show less
v1.6.2
v1.6.3
v1.7.0
v1.7.1
v1.7.2
Fixed in
1.7.3
2.1.1
References
Updated Jul 08, 2026 · Source: OSV.dev | ||
v1.0.1
patch
1 CVE
CVE-2024-2653
GHSA-qjfw-cvjf-f4fm
Apr 03, 2024
AMPHP Denial of Service via HTTP/2 CONTINUATION Frames
8.2
/ 10
High
Network
Low
None
None
Unchanged
None
Low
High
AcknowledgementsThank you to Bartek Nowotarski for reporting the vulnerability. Affected versions
v2.0.0
v2.1.0
v1.0.0
v1.0.1
v1.1.0
v1.2.0
v1.3.0
v1.4.0
v1.5.0
v1.6.0
v1.6.0-rc1
v1.6.1
+ 5 more Show less
v1.6.2
v1.6.3
v1.7.0
v1.7.1
v1.7.2
Fixed in
1.7.3
2.1.1
References
Updated Jul 08, 2026 · Source: OSV.dev | ||
v1.0.0
initial
2 CVEs
GHSA-8v5x-6vv5-jv4g
May 15, 2024
amphp/http Host Header Injection vulnerability
Medium
amphp/http versions before 1.0.1 allows an attacker to supply invalid input in the Host header which may lead to various type of Host header injection attacks. Affected versions
v1.0.0
Fixed in
1.0.1
References Updated Nov 29, 2024 · Source: OSV.dev
CVE-2024-2653
GHSA-qjfw-cvjf-f4fm
Apr 03, 2024
AMPHP Denial of Service via HTTP/2 CONTINUATION Frames
8.2
/ 10
High
Network
Low
None
None
Unchanged
None
Low
High
AcknowledgementsThank you to Bartek Nowotarski for reporting the vulnerability. Affected versions
v2.0.0
v2.1.0
v1.0.0
v1.0.1
v1.1.0
v1.2.0
v1.3.0
v1.4.0
v1.5.0
v1.6.0
v1.6.0-rc1
v1.6.1
+ 5 more Show less
v1.6.2
v1.6.3
v1.7.0
v1.7.1
v1.7.2
Fixed in
1.7.3
2.1.1
References
Updated Jul 08, 2026 · Source: OSV.dev |