Metrics
Affected Vendors & Products
Source | ID | Title |
---|---|---|
![]() |
EUVD-2024-3477 | Traefik (pronounced traffic) is an HTTP reverse proxy and load balancer. There is a vulnerability in Traefik that allows the client to provide the X-Forwarded-Prefix header from an untrusted source. This issue has been addressed in versions 2.11.14 and 3.2.1. Users are advised to upgrade. There are no known workarounds for this vulnerability. |
![]() |
GHSA-h924-8g65-j9wg | Traefik's X-Forwarded-Prefix Header still allows for Open Redirect |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 02 Dec 2024 12:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 29 Nov 2024 18:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Traefik (pronounced traffic) is an HTTP reverse proxy and load balancer. There is a vulnerability in Traefik that allows the client to provide the X-Forwarded-Prefix header from an untrusted source. This issue has been addressed in versions 2.11.14 and 3.2.1. Users are advised to upgrade. There are no known workarounds for this vulnerability. | |
Title | X-Forwarded-Prefix Header still allows for Open Redirect in traefik | |
Weaknesses | CWE-601 | |
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-12-02T11:19:36.740Z
Reserved: 2024-11-04T17:46:16.778Z
Link: CVE-2024-52003

Updated: 2024-12-02T11:17:21.860Z

Status : Received
Published: 2024-11-29T19:15:08.170
Modified: 2024-11-29T19:15:08.170
Link: CVE-2024-52003

No data.

Updated: 2025-07-12T23:05:46Z