logo

Tinyproxy Request Smuggling Flaws Expose Networks

ID: ac683523-4573-535d-995a-b60e457cdcf5

STIX ID: report--ac683523-4573-535d-995a-b60e457cdcf5

Feed Name: securityonline.info

Threat Score
75/100

Date Published: 2026-06-23

Date Updated: 2026-06-23

Author: Do Son

...
...

Three critical vulnerabilities in Tinyproxy (CVE-2026-54388, CVE-2026-54387, CVE-2026-55202) enable HTTP request smuggling and Host header validation bypass, with top severity ratings (up to CVSSv4 9.3); administrators are urged to apply fixes to the listed commits immediately, although no active exploitation has been confirmed.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.