Logo
vulnerabilityCVE-2026-43504
Name
CVE-2026-43504
Source
NVD ( link)Debian ( link)
Description
An issue was discovered in Prosody before 0.12.6 and 1.0.0 through 13.0.0 before 13.0.5, when mod_proxy65 is enabled. Because mod_proxy65 mishandles access control in a paused scenario, relaying of unauthenticated traffic can occur.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
prosody
Exploitable

Vulnerability Ratings#


6.5
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
0.11.14
Exploitable
openwrt
master
0.12.6-r1
Not Affected
openwrt
openwrt-25.12
0.12.6-r1
Not Affected