High severity7.5NVD Advisory· Published Aug 12, 2026· Updated Sep 3, 2026
CVE-2026-65370
CVE-2026-65370
Description
ServiceTalk HTTP/1.x incorrectly handles malformed Transfer-Encoding which could result in request smuggling attacks. This vulnerability is addressed in servicetalk version 0.42.65.
Affected products
1- Range: >=0.42.65
Patches
Vulnerability mechanics
References
1- github.com/apple/servicetalk/security/advisories/GHSA-56h2-h3h4-m9x6nvdThird Party Advisory
News mentions
0No linked articles in our index yet.