Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 12

Количество 12

ubuntu логотип

CVE-2026-33555

5 месяцев назад

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVSS3: 4
EPSS: Низкий
redhat логотип

CVE-2026-33555

5 месяцев назад

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVSS3: 4
EPSS: Низкий
nvd логотип

CVE-2026-33555

5 месяцев назад

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVSS3: 4
EPSS: Низкий
msrc логотип

CVE-2026-33555

5 месяцев назад

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVSS3: 4
EPSS: Низкий
debian логотип

CVE-2026-33555

5 месяцев назад

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser doe ...

CVSS3: 4
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20618-1

5 месяцев назад

Security update for haproxy

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1568-1

5 месяцев назад

Security update for haproxy

EPSS: Низкий
redos логотип

ROS-20260922-80-0164

3 дня назад

Уязвимость haproxy2

CVSS3: 5.8
EPSS: Низкий
redos логотип

ROS-20260922-80-0163

3 дня назад

Уязвимость haproxy

CVSS3: 5.8
EPSS: Низкий
redos логотип

ROS-20260922-73-0130

3 дня назад

Уязвимость haproxy

CVSS3: 5.8
EPSS: Низкий
redos логотип

ROS-20260922-73-0129

3 дня назад

Уязвимость haproxy2

CVSS3: 5.8
EPSS: Низкий
github логотип

GHSA-5mp8-rq5m-pj7m

5 месяцев назад

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVSS3: 4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-33555

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVSS3: 4
0%
Низкий
5 месяцев назад
redhat логотип
CVE-2026-33555

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVSS3: 4
0%
Низкий
5 месяцев назад
nvd логотип
CVE-2026-33555

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVSS3: 4
0%
Низкий
5 месяцев назад
msrc логотип
CVE-2026-33555

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVSS3: 4
0%
Низкий
5 месяцев назад
debian логотип
CVE-2026-33555

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser doe ...

CVSS3: 4
0%
Низкий
5 месяцев назад
suse-cvrf логотип
openSUSE-SU-2026:20618-1

Security update for haproxy

0%
Низкий
5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:1568-1

Security update for haproxy

0%
Низкий
5 месяцев назад
redos логотип
ROS-20260922-80-0164

Уязвимость haproxy2

CVSS3: 5.8
0%
Низкий
3 дня назад
redos логотип
ROS-20260922-80-0163

Уязвимость haproxy

CVSS3: 5.8
0%
Низкий
3 дня назад
redos логотип
ROS-20260922-73-0130

Уязвимость haproxy

CVSS3: 5.8
0%
Низкий
3 дня назад
redos логотип
ROS-20260922-73-0129

Уязвимость haproxy2

CVSS3: 5.8
0%
Низкий
3 дня назад
github логотип
GHSA-5mp8-rq5m-pj7m

An issue was discovered in HAProxy before 3.3.6. The HTTP/3 parser does not check that the received body length matches a previously announced content-length when the stream is closed via a frame with an empty payload. This can cause desynchronization issues with the backend server and could be used for request smuggling. The earliest affected version is 2.6.

CVSS3: 4
0%
Низкий
5 месяцев назад

Уязвимостей на страницу