> IT-Sentinel.com

// Cybersecurity & IT News Aggregator - Real-time Threat Intelligence Feed

NEWS CVE
← messages.back_to_articles

> USN-8495-1: nghttp2 vulnerability

[SOURCE] Ubuntu Security Notices [DATE: 02/07/2026 13:57] [LANGUAGE: EN]
It was discovered that the nghttp2 nghttpx proxy incorrectly handled HTTP/1.1 Upgrade requests that included a Content-Length header and body. A remote attacker could possibly use this issue to perform HTTP request and response smuggling attacks against backend services.
[messages.read_original_source] →