PatchSiren

gleam-wisp CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH gleam-wisp CVE published 2026-04-02

CVE-2026-32145

CVE-2026-32145 is a high-severity, unauthenticated denial-of-service issue in wisp's multipart form handling. In affected releases, multipart parsing can bypass configured size limits, allowing a single oversized multipart request to consume server memory or disk.