CVE-2026-4742 PUBLISHED

HTTP Request Smuggling in visualfc/liteide

Assigner: GovTech CSG
Reserved: 24.03.2026 Published: 24.03.2026 Updated: 24.03.2026

Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') vulnerability in visualfc liteide (liteidex/src/3rdparty/qjsonrpc/src/http-parser modules). This vulnerability is associated with program files http_parser.C.

This issue affects liteide: before x38.4.

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:L/SI:L/SA:N/E:P/S:N/AU:N/R:U/V:D/RE:L/U:Green
CVSS Score: 2.9

Product Status

Vendor visualfc
Product liteide
Versions Default: affected
  • affected from 0 to x38.4 (excl.)

Credits

  • TITAN Team (titancaproject@gmail.com) reporter

References

Problem Types

  • CWE-444 Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') CWE