High severity7.5NVD Advisory· Published Jan 11, 2021· Updated Jun 17, 2026
CVE-2020-17509
CVE-2020-17509
Description
ATS negative cache option is vulnerable to a cache poisoning attack. If you have this option enabled, please upgrade or disable this feature. Apache Traffic Server versions 7.0.0 to 7.1.11 and 8.0.0 to 8.1.0 are affected.
Affected products
3- Apache/Traffic Serverdescription
7.0.0 to 7.1.11 and 8.0.0 to 8.1.0+ 1 more
- (no CPE)range: 7.0.0 to 7.1.11 and 8.0.0 to 8.1.0
- cpe:2.3:a:apache:traffic_server:*:*:*:*:*:*:*:*range: >=6.0.0,<=6.2.3
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.