Description
Improper Input Validation vulnerability for the xdebug plugin in Apache Software Foundation Apache Traffic Server can lead to cross site scripting and cache poisoning attacks.This issue affects Apache Traffic Server: 9.0.0 to 9.1.3. Users should upgrade to 9.1.4 or later versions.
No analysis available yet.
Remediation
Vendor Workaround
Disable the xdebug plugin or change the default header to activate the plugin.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-44011 | Improper Input Validation vulnerability for the xdebug plugin in Apache Software Foundation Apache Traffic Server can lead to cross site scripting and cache poisoning attacks.This issue affects Apache Traffic Server: 9.0.0 to 9.1.3. Users should upgrade to 9.1.4 or later versions. |
References
History
Thu, 17 Apr 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2025-04-17T14:19:43.233Z
Reserved: 2022-09-16T15:16:34.382Z
Link: CVE-2022-40743
Updated: 2024-08-03T12:28:41.365Z
Status : Modified
Published: 2022-12-19T12:15:11.040
Modified: 2025-04-17T15:15:47.180
Link: CVE-2022-40743
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD