← back
CVE-2021-40346

CVE-2021-40346

15Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 58%
exploitation probability
58%top 1% of all CVEs
observed exploitation
nono source reports it
An integer overflow exists in HAProxy 2.0 through 2.5 in htx_add_header that can be exploited to perform an HTTP request smuggling attack, allowing an attacker to bypass all configured http-request HAProxy ACLs and possibly other ACLs.
Affected products
n/a · n/a