Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 14

Количество 14

ubuntu логотип

CVE-2026-33555

5 месяцев назад

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVSS3: 4
EPSS: Низкий
redhat логотип

CVE-2026-33555

6 месяцев назад

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVSS3: 4
EPSS: Низкий
nvd логотип

CVE-2026-33555

5 месяцев назад

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVSS3: 4
EPSS: Низкий
msrc логотип

CVE-2026-33555

5 месяцев назад

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVSS3: 4
EPSS: Низкий
debian логотип

CVE-2026-33555

5 месяцев назад

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser doe ...

CVSS3: 4
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20618-1

5 месяцев назад

Security update for haproxy

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1568-1

5 месяцев назад

Security update for haproxy

EPSS: Низкий
redos логотип

ROS-20260922-80-0164

4 дня назад

Уязвимость haproxy2

CVSS3: 5.8
EPSS: Низкий
redos логотип

ROS-20260922-80-0163

4 дня назад

Уязвимость haproxy

CVSS3: 5.8
EPSS: Низкий
redos логотип

ROS-20260922-73-0130

4 дня назад

Уязвимость haproxy

CVSS3: 5.8
EPSS: Низкий
redos логотип

ROS-20260922-73-0129

4 дня назад

Уязвимость haproxy2

CVSS3: 5.8
EPSS: Низкий
github логотип

GHSA-5mp8-rq5m-pj7m

5 месяцев назад

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVSS3: 4
EPSS: Низкий
altlinux логотип

ALT-PU-2026-16067

3 дня назад

ALT-PU-2026-16067: package `haproxy` update to version 2.8.28-alt1

CVSS3: 9.1
EPSS: Низкий
altlinux логотип

ALT-PU-2026-12694

около 1 месяца назад

ALT-PU-2026-12694: package `haproxy` update to version 3.4.3-alt1

CVSS3: 9.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-33555

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVSS3: 4
1%
Низкий
5 месяцев назад
redhat логотип
CVE-2026-33555

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVSS3: 4
1%
Низкий
6 месяцев назад
nvd логотип
CVE-2026-33555

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVSS3: 4
1%
Низкий
5 месяцев назад
msrc логотип
CVE-2026-33555

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVSS3: 4
1%
Низкий
5 месяцев назад
debian логотип
CVE-2026-33555

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser doe ...

CVSS3: 4
1%
Низкий
5 месяцев назад
suse-cvrf логотип
openSUSE-SU-2026:20618-1

Security update for haproxy

1%
Низкий
5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:1568-1

Security update for haproxy

1%
Низкий
5 месяцев назад
redos логотип
ROS-20260922-80-0164

Уязвимость haproxy2

CVSS3: 5.8
1%
Низкий
4 дня назад
redos логотип
ROS-20260922-80-0163

Уязвимость haproxy

CVSS3: 5.8
1%
Низкий
4 дня назад
redos логотип
ROS-20260922-73-0130

Уязвимость haproxy

CVSS3: 5.8
1%
Низкий
4 дня назад
redos логотип
ROS-20260922-73-0129

Уязвимость haproxy2

CVSS3: 5.8
1%
Низкий
4 дня назад
github логотип
GHSA-5mp8-rq5m-pj7m

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVSS3: 4
1%
Низкий
5 месяцев назад
altlinux логотип
ALT-PU-2026-16067

ALT-PU-2026-16067: package `haproxy` update to version 2.8.28-alt1

CVSS3: 9.1
3 дня назад
altlinux логотип
ALT-PU-2026-12694

ALT-PU-2026-12694: package `haproxy` update to version 3.4.3-alt1

CVSS3: 9.1
около 1 месяца назад

Уязвимостей на страницу