Ulises Gascón@kom_256Patch
A high‑severity fix for CVE-2026-33804, affecting Fastify’s middie via the deprecated ignoreDuplicateSlashes option, has just been released.
Infoflowcloud@infoflowcloudDisclosure
The tweet announces the discovery of CVE-2026-33804 affecting @fastapi/middie versions 9.3.1 and earlier due to a middleware bypass when the deprecated ignoreDuplicateSlashes option is enabled.
CVE@CVEnewDisclosure
The post announces that @fastify/middie versions 9.3.1 and earlier are vulnerable to a middleware bypass when the deprecated ignoreDuplicateSlashes option is enabled, referencing CVE-2026-33804.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
A middleware bypass vulnerability has been disclosed for @fastify/middie 9.3.1, triggered by a duplicate slash; detailed information is available on Vulmon.