CVE-2025-27820
24.04.2025, 12:15
A bug in PSL validation logic in Apache HttpClient 5.4.x disables domain checks, affecting cookie management and host name verification. Discovered by the Apache HttpClient team. Fixed in the 5.4.3 releaseEnginsight
| Vendor | Product | Version |
|---|---|---|
| apache | httpclient | 5.4 ≤ 𝑥 < 5.4.3 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration
References