apache/trafficserver

Direct Vulnerabilities

Known vulnerabilities in the https://github.com|apache/trafficserver package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Stack-based Buffer Overflow

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
Denial of Service (DoS)

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
Denial of Service (DoS)

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • M
HTTP Request Smuggling

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • M
Out-of-bounds Write

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • M
Incorrect Behavior Order

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
Out-of-bounds Write

[10.0.0,10.1.4)
  • H
Improper Input Validation

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • M
Improper Certificate Validation

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • M
HTTP Request Smuggling

[10.0.0,10.1.4)
  • H
Stack-based Buffer Overflow

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
Use After Free

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
Deserialization of Untrusted Data

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
Missing Release of Memory after Effective Lifetime

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
Uncontrolled Recursion

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
Stack-based Buffer Overflow

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
Incorrect Authorization

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
Use After Free

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
Improper Input Validation

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
Out-of-bounds Write

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
Improper Input Validation

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • C
NULL Pointer Dereference

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • C
Stack-based Buffer Overflow

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • M
Out-of-bounds Read

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • M
Information Exposure

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
Stack-based Buffer Overflow

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
Improper Certificate Validation

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
Denial of Service (DoS)

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
Server-side Request Forgery (SSRF)

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
Out-of-bounds Write

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • M
Integer Overflow or Wraparound

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • C
HTTP Request Smuggling

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
HTTP Request Smuggling

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • M
Regular Expression without Anchors

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
Access Control Bypass

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • M
Incorrect Authorization

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • C
Out-of-bounds Write

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
HTTP Request Smuggling

[9.0.0,9.2.15)[10.0.0,10.1.4)
  • H
Allocation of Resources Without Limits or Throttling

[9.0.0,9.2.14)[10.0.0,10.1.3)