Hotels maintains a narrowly scoped vulnerability footprint centered on its Styx proxy and request-routing product, with the recurring signal pointing to injection-class weaknesses in output neutralization and downstream component handling. This reflects the product's role in parsing and forwarding network traffic; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Hotels over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-6858MEDIUM Hotels Styx through 1.0.0.beta8 allows HTTP response splitting due to CRLF Injection. This is exploitable if untrusted user input can appear in a response header. | Mar 12, 2020 | 6.5 | 22 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Hotels.
Media articles that mention a CVE ID that affects a product developed by Hotels — matched by CVE ID, not by vendor name.