VendorsApachetraffic_serverall versions
Vulnerabilities

Apache Traffic Server

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

121CVEs
CVE-2014-3525
Unspecified vulnerability in Apache Traffic Server 3.x through 3.2.5, 4.x before 4.2.1.1, and 5.x before 5.0.1 has unknown impact and attack vectors, possibly related to health checks.
Published 2014-08-22 · Modified
10.0EPSS 0.045
CVE-2015-5206
Unspecified vulnerability in the HTTP/2 experimental feature in Apache Traffic Server before 5.3.x before 5.3.2 has unknown impact and attack vectors, a different vulnerability than CVE-2015-5168.
Published 2017-09-13 · Modified
10.0EPSS 0.024
CVE-2015-5168
Unspecified vulnerability in the HTTP/2 experimental feature in Apache Traffic Server 5.3.x before 5.3.2 has unknown impact and attack vectors, a different vulnerability than CVE-2015-5206.
Published 2017-09-13 · Modified
10.0EPSS 0.024
CVE-2026-57834
Apache Traffic Server: Malformed chunked message body allows request smuggling
Published 2026-07-29 · Analyzed
10.0EPSS 0.004
CVE-2026-33267
Apache Traffic Server: Untrusted @ headers can spoof ATS internal metadata
Published 2026-07-29 · Analyzed
10.0EPSS 0.004
CVE-2026-58150
Apache Traffic Server: HTTP/2 requests with Transfer-Encoding are not rejected, allowing request smuggling
Published 2026-07-29 · Analyzed
10.0EPSS 0.004
CVE-2026-58162
Apache Traffic Server: Certifier plugin trusts client SNI when generating certificates
Published 2026-07-29 · Analyzed
10.0EPSS 0.002
CVE-2015-3249
The HTTP/2 experimental feature in Apache Traffic Server 5.3.x before 5.3.1 allows remote attackers to cause a denial of service (out-of-bounds access and daemon crash) or possibly execute arbitrary code via vectors related to the (1) frame_handlers array or (2) set_dynamic_table_size function.
Published 2017-10-30 · Modified
9.8EPSS 0.054
CVE-2014-3624
Apache Traffic Server 5.1.x before 5.1.1 allows remote attackers to bypass access restrictions by leveraging failure to properly tunnel remap requests using CONNECT.
Published 2017-10-30 · Modified
9.8EPSS 0.038
CVE-2019-17559
There is a vulnerability in Apache Traffic Server 6.0.0 to 6.2.3, 7.0.0 to 7.1.8, and 8.0.0 to 8.0.5 with a smuggling attack and scheme parsing. Upgrade to versions 7.1.9 and 8.0.6 or later versions.
Published 2020-03-23 · Modified
9.8EPSS 0.032
CVE-2019-17565
There is a vulnerability in Apache Traffic Server 6.0.0 to 6.2.3, 7.0.0 to 7.1.8, and 8.0.0 to 8.0.5 with a smuggling attack and chunked encoding. Upgrade to versions 7.1.9 and 8.0.6 or later versions.
Published 2020-03-23 · Modified
9.8EPSS 0.032
CVE-2020-1944
There is a vulnerability in Apache Traffic Server 6.0.0 to 6.2.3, 7.0.0 to 7.1.8, and 8.0.0 to 8.0.5 with a smuggling attack and Transfer-Encoding and Content length headers. Upgrade to versions 7.1.9 and 8.0.6 or later versions.
Published 2020-03-23 · Modified
9.8EPSS 0.027
CVE-2021-35474
Dynamic stack buffer overflow in cachekey plugin
Published 2021-06-30 · Modified
9.8EPSS 0.027
CVE-2021-43082
heap-buffer-overflow with stats-over-http plugin
Published 2021-11-03 · Modified
9.8EPSS 0.024
CVE-2026-58179
Apache Traffic Server: regex_remap plugin overflows the stack from attacker input
Published 2026-07-29 · Analyzed
9.8EPSS 0.004
CVE-2026-58185
Apache Traffic Server: Use-after-free in the intercept plugin
Published 2026-07-29 · Analyzed
9.8EPSS 0.003
CVE-2026-58177
Apache Traffic Server: Memory-safety and path-traversal errors in the Cripts framework
Published 2026-07-29 · Analyzed
9.8EPSS 0.003
CVE-2026-58155
Apache Traffic Server: Header-name length truncation enables header aliasing and request smuggling
Published 2026-07-29 · Analyzed
9.3EPSS 0.004
CVE-2026-41920
Apache Traffic Server: SNI to Host header matching policy is not properly enforced
Published 2026-07-29 · Analyzed
9.3EPSS 0.003
CVE-2026-58161
Apache Traffic Server: Memory-safety errors in TLS and SNI handling can crash the server
Published 2026-07-29 · Analyzed
9.2EPSS 0.004
CVE-2026-58154
Apache Traffic Server: Memory-safety errors in MIME and header parsing
Published 2026-07-29 · Analyzed
9.2EPSS 0.004
CVE-2024-50306
Apache Traffic Server: Server process can fail to drop privilege
Published 2024-11-14 · Modified
9.1EPSS 0.016
CVE-2023-33934
Apache Traffic Server: Differential fuzzing for HTTP request parsing discrepancies
Published 2023-08-09 · Modified
9.1EPSS 0.016
CVE-2024-35161
Apache Traffic Server: Incomplete check for chunked trailer section allows request smuggling
Published 2024-07-26 · Modified
9.1EPSS 0.010
CVE-2026-58163
Apache Traffic Server: Cache deserialization and lifetime errors can corrupt state or crash the server
Published 2026-07-29 · Analyzed
9.1EPSS 0.004
CVE-2026-58151
Apache Traffic Server: Abusive HTTP/2 framing can exhaust resources and crash the server
Published 2026-07-29 · Analyzed
8.7EPSS 0.005
CVE-2026-58157
Apache Traffic Server: Improper server-session reuse can expose data across client connections
Published 2026-07-29 · Analyzed
8.7EPSS 0.003
CVE-2017-5660
There is a vulnerability in Apache Traffic Server (ATS) 6.2.0 and prior and 7.0.0 and prior with the Host header and line folding. This can have issues when interacting with upstream proxies and the wrong host being used.
Published 2018-02-27 · Modified
8.6EPSS 0.019
CVE-2026-58182
Apache Traffic Server: ts_lua plugin has initialization and resource-handling errors
Published 2026-07-29 · Analyzed
8.6EPSS 0.004
CVE-2026-58188
Apache Traffic Server: Memory-safety and limit-bypass errors across experimental plugins
Published 2026-07-29 · Analyzed
8.4EPSS 0.004
CVE-2026-58153
Apache Traffic Server: HTTP/2 to HTTP/1 conversion forwards origin trailers to clients unsafely
Published 2026-07-29 · Analyzed
8.3EPSS 0.005
CVE-2026-58164
Apache Traffic Server: Remap configuration lifetime and TOCTOU errors cause use-after-free
Published 2026-07-29 · Analyzed
8.3EPSS 0.004
CVE-2026-58184
Apache Traffic Server: header_rewrite plugin cookie handling can corrupt memory
Published 2026-07-29 · Analyzed
8.3EPSS 0.003
CVE-2024-35296
Apache Traffic Server: Invalid Accept-Encoding can force forwarding requests
Published 2024-07-26 · Modified
8.2EPSS 0.011
CVE-2026-65324
Apache Traffic Server: HTTP/2 and HTTP/3 dechunking removes per-stream buffer cap, allowing memory exhaustion
Published 2026-07-29 · Analyzed
8.2EPSS 0.005
CVE-2026-58186
Apache Traffic Server: webp_transform plugin decodes unsafely and mislabels degraded responses
Published 2026-07-29 · Analyzed
8.2EPSS 0.004
CVE-2026-22068
Apache Traffic Server: Regex mappings match with malicious domain names
Published 2026-07-29 · Analyzed
8.2EPSS 0.004
CVE-2026-58178
Apache Traffic Server: ESI plugin allows uncontrolled recursion and server-side request forgery
Published 2026-07-29 · Analyzed
8.2EPSS 0.004
CVE-2026-58180
Apache Traffic Server: txn_box plugin overflows the stack from attacker input
Published 2026-07-29 · Analyzed
8.2EPSS 0.004
CVE-2026-58175
Apache Traffic Server: HostDB SRV handling leaks memory
Published 2026-07-29 · Analyzed
8.2EPSS 0.004
1 / 4Next →