Search CVE reports


Toggle filters

21 – 30 of 74 results


CVE-2022-47185

Medium priority
Needs evaluation

Improper input validation vulnerability on the range header in Apache Software Foundation Apache Traffic Server.This issue affects Apache Traffic Server: through 9.2.1.

1 affected package

trafficserver

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
trafficserver Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2022-47184

Medium priority
Needs evaluation

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Software Foundation Apache Traffic Server.This issue affects Apache Traffic Server: 8.0.0 to 9.2.0.

1 affected package

trafficserver

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
trafficserver Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2022-40743

Medium priority
Needs evaluation

Improper Input Validation vulnerability for the xdebug plugin in Apache Software Foundation Apache Traffic Server can lead to cross site scripting and cache poisoning attacks.This issue affects Apache Traffic Server: 9.0.0 to...

1 affected package

trafficserver

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
trafficserver Not affected Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2022-37392

Medium priority
Needs evaluation

Improper Check for Unusual or Exceptional Conditions vulnerability in handling the requests to Apache Traffic Server. This issue affects Apache Traffic Server 8.0.0 to 9.1.2.

1 affected package

trafficserver

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
trafficserver Not affected Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2022-32749

Medium priority
Needs evaluation

Improper Check for Unusual or Exceptional Conditions vulnerability handling requests in Apache Traffic Server allows an attacker to crash the server under certain conditions. This issue affects Apache Traffic Server: from 8.0.0...

1 affected package

trafficserver

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
trafficserver Not affected Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2022-31780

Medium priority
Needs evaluation

Improper Input Validation vulnerability in HTTP/2 frame handling of Apache Traffic Server allows an attacker to smuggle requests. This issue affects Apache Traffic Server 8.0.0 to 9.1.2.

1 affected package

trafficserver

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
trafficserver Not affected Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2022-31779

Medium priority
Needs evaluation

Improper Input Validation vulnerability in HTTP/2 header parsing of Apache Traffic Server allows an attacker to smuggle requests. This issue affects Apache Traffic Server 8.0.0 to 9.1.2.

1 affected package

trafficserver

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
trafficserver Not affected Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2022-31778

Medium priority
Needs evaluation

Improper Input Validation vulnerability in handling the Transfer-Encoding header of Apache Traffic Server allows an attacker to poison the cache. This issue affects Apache Traffic Server 8.0.0 to 9.0.2.

1 affected package

trafficserver

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
trafficserver Not affected Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2022-28129

Medium priority
Needs evaluation

Improper Input Validation vulnerability in HTTP/1.1 header parsing of Apache Traffic Server allows an attacker to send invalid headers. This issue affects Apache Traffic Server 8.0.0 to 9.1.2.

1 affected package

trafficserver

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
trafficserver Not affected Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2022-25763

Medium priority
Needs evaluation

Improper Input Validation vulnerability in HTTP/2 request validation of Apache Traffic Server allows an attacker to create smuggle or cache poison attacks. This issue affects Apache Traffic Server 8.0.0 to 9.1.2.

1 affected package

trafficserver

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
trafficserver Not affected Needs evaluation Needs evaluation Needs evaluation
Show less packages