CVE-2024-52003
29.11.2024, 19:15
Traefik (pronounced traffic) is an HTTP reverse proxy and load balancer. There is a vulnerability in Traefik that allows the client to provide the X-Forwarded-Prefix header from an untrusted source. This issue has been addressed in versions 2.11.14 and 3.2.1. Users are advised to upgrade. There are no known workarounds for this vulnerability.
| Vendor | Product | Version |
|---|---|---|
| traefik | traefik | 𝑥 < 2.11.14 |
| traefik | traefik | 3.0.0 ≤ 𝑥 < 3.2.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration