Security: apernet/hysteria
Security Advisories
View known security vulnerabilities and report new vulnerabilities privately to maintainers.
-
Authenticated UDP ACL bypass enables localhost and private-network UDP SSRFGHSA-vgrc-hq28-p3xp published
May 23, 2026 by tobyxddHigh -
Server crash when max_datagram_frame_size very smallGHSA-qh5x-rfwf-rvfv published
May 23, 2026 by tobyxddHigh -
http large header with sniff cause server DoSGHSA-jqc5-2p7q-fqfc published
May 23, 2026 by tobyxddHigh -
A specially constructed quic package can crash the server OOM when the sniff is enabledGHSA-9fw6-xgg2-mq9q published
Apr 27, 2026 by tobyxddHigh