VYPR
Unrated severityNVD Advisory· Published Aug 10, 2022· Updated Oct 20, 2025

Improper input validation on HTTP/2 headers

CVE-2022-25763

Description

Improper Input Validation vulnerability in HTTP/2 request validation of Apache Traffic Server allows an attacker to create smuggle or cache poison attacks. This issue affects Apache Traffic Server 8.0.0 to 9.1.2.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Apache/Traffic Serverllm-fuzzy2 versions
    >= 8.0.0, <= 9.1.2+ 1 more
    • (no CPE)range: >= 8.0.0, <= 9.1.2
    • (no CPE)range: 8.0.0 to 9.1.2

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.