← back
CVE-2022-31780CWE-20

HTTP/2 framing vulnerabilities

3Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 2.3%
exploitation probability
2.3%top 17% of all CVEs
observed exploitation
nono source reports it
Improper Input Validation vulnerability in HTTP/2 frame handling of Apache Traffic Server allows an attacker to smuggle requests. This issue affects Apache Traffic Server 8.0.0 to 9.1.2.