ehttp 1.0.6 before 17405b9 has an epollsocket.cpp readfunc use-after-free. An attacker can make many connections over a short time to trigger this.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-52266.json"