HTTP request/response smuggling vulnerability in HAProxy...
High severity
Unreviewed
Published
Apr 11, 2023
to the GitHub Advisory Database
•
Updated Apr 4, 2024
Description
Published by the National Vulnerability Database
Apr 11, 2023
Published to the GitHub Advisory Database
Apr 11, 2023
Last updated
Apr 4, 2024
HTTP request/response smuggling vulnerability in HAProxy version 2.7.0, and 2.6.1 to 2.6.7 allows a remote attacker to alter a legitimate user's request. As a result, the attacker may obtain sensitive information or cause a denial-of-service (DoS) condition.
References