GHSA-9fgx-g8xr-w8vfHighCVSS 7.5

Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') response...

Published
October 1, 2026
Last Modified
October 1, 2026

🔗 CVE IDs covered (1)

📋 Description

Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') response smuggling vulnerability in Apache HTTP Server via mod_proxy_uwsgi and a crafted uwsgi response with Transfer-Encoding.

This issue affects Apache HTTP Server: from 2.4.30 through 2.4.68.

🔗 References (4)