
We found results for “”
CVE-2025-49763
Good to know:

Date: June 19, 2025
In Apache Traffic Server 9.x before 9.2.11 and 10.x before 10.0.6, There is a remote DoS vulnerability via memory exhaustion in ESI Plugin.
Severity Score
Severity Score
Weakness Type (CWE)
Uncontrolled Resource Consumption
CWE-400Top Fix

Upgrade Version
Upgrade to version https://github.com/apache/trafficserver.git - 9.2.11;https://github.com/apache/trafficserver.git - 10.0.6
CVSS v3.1
Base Score: |
|
---|---|
Attack Vector (AV): | NETWORK |
Attack Complexity (AC): | LOW |
Privileges Required (PR): | NONE |
User Interaction (UI): | NONE |
Scope (S): | UNCHANGED |
Confidentiality (C): | NONE |
Integrity (I): | NONE |
Availability (A): | HIGH |