CVE-2026-29085 | honojs hono up to 4.12.3 SSE Protocol streamSSE event/id/retry injection (GHSA-p6xx-57qc-3wxr)
A vulnerability classified as problematic has been found in honojs hono up to 4.12.3. This affects the function streamSSE of the component SSE Protocol Handler. The manipulation of the argument event/id/retry leads to injection.
This vulnerability is documented as CVE-2026-29085. The attack can be initiated remotely. There is not any exploit available.
It is recommended to upgrade the affected component.