Customers may report a vulnerability scan identifying CVE-2026-3419 vulnerability in Fastify library
Symantec Data Loss Prevention (DLP) Servers
Version 25.1, 26.1 and potentially others
Fastify incorrectly accepts malformed Content-Type headers containing trailing characters after the subtype token, in violation of RFC 9110 ยง8.3.1
Not applicable.
DLP is not impacted. This CVE does not affect the version of this component used in DLP. Fastify (npm) is not present anywhere in DLP.