> IT-Sentinel.com

// Cybersecurity & IT News Aggregator - Real-time Threat Intelligence Feed

NEWS CVE
← messages.back_to_articles

> Debian haproxy Important HTTP Request Smuggling CVE-2026-33555 DSA-6291-1

[SOURCE] LinuxSecurity - Debian [DATE: 22/05/2026 20:18] [LANGUAGE: EN]
Martino Spagnuolo reported that the HTTP/3 parsing code in HAProxy, a fast and reliable load balancing reverse proxy, does not properly validate the received body size and the announced content-length header, which may result in HTTP request smuggling. For the stable distribution (trixie), this problem has been fixed in
[messages.read_original_source] →