Symantec DLP and CVE-2026-3419 Fastify Vulnerability
search cancel

Symantec DLP and CVE-2026-3419 Fastify Vulnerability

book

Article ID: 454037

calendar_today

Updated On:

Products

Data Loss Prevention Core Package

Issue/Introduction

Customers may report a vulnerability scan identifying CVE-2026-3419 vulnerability in Fastify library

Environment

Symantec Data Loss Prevention (DLP) Servers

Version 25.1, 26.1 and potentially others

Cause

Fastify incorrectly accepts malformed Content-Type headers containing trailing characters after the subtype token, in violation of RFC 9110 ยง8.3.1

Resolution

Not applicable.

DLP is not impacted. This CVE does not affect the version of this component used in DLP.     Fastify (npm) is not present anywhere in DLP.