Logo
vulnerabilityCVE-2026-58055
Name
CVE-2026-58055
Source
NVD ( link)Debian ( link)
Description
nghttp2's nghttpx proxy through 1.69.0 forwards an HTTP/1.1 Upgrade request that also carries a Content-Length header and body onto reusable keep-alive backend connections, re-adding the Upgrade and Connection headers while passing Content-Length verbatim. A backend that resolves the resulting ambiguous message in the attacker's favor enables HTTP request/response smuggling and cross-client response-queue poisoning.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
nghttp2
Exploitable

Vulnerability Ratings#


6.3
CVSSv4
5.4
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
1.64.0
Exploitable
buildroot
master
1.68.1
Exploitable
openwrt
master
1.70.0-r1
Not Affected
openwrt
openwrt-25.12
1.70.0-r1
Not Affected
yocto
master
1.70.0
Not Affected
yocto
scarthgap
1.61.0
Exploitable