Description
There is a vulnerability in Apache Traffic Server 6.0.0 to 6.2.3, 7.0.0 to 7.1.8, and 8.0.0 to 8.0.5 with a smuggling attack and scheme parsing. Upgrade to versions 7.1.9 and 8.0.6 or later versions.
Remediation
References
Related Vulnerabilities
Liferay DXP Insertion of Sensitive Information Into Sent Data Vulnerability (CVE-2025-43814)
OpenSSL Access of Resource Using Incompatible Type ('Type Confusion') Vulnerability (CVE-2023-0286)
WordPress Plugin EWWW Image Optimizer Cloud Cross-Site Scripting (2.0.1)
Cherokee NULL Pointer Dereference Vulnerability (CVE-2020-12845)