What is CVE-2026-58181?
The uri_signing and url_sig plugins in Apache Traffic Server can exhaust the stack or crash due to attacker input. This affects versions 8.0.0 through 10.1.3. Users are recommended to upgrade to version 9.2.15 or 10.1.4.
Azərbaycanca: Apache Traffic Server-in uri_signing və url_sig plaginləri təhlükəli giriş nəticəsində stack tükənməsinə və ya çökməyə səbəb ola bilər. 8.0.0-dan 10.1.3-ə qədər olan versiyalar təsirlənir. İstifadəçilərə 9.2.15 və ya 10.1.4 versiyalarına yüksəltmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-400; shared vendor: Apache
FAQ2
Which versions of Apache Traffic Server are affected by CVE-2026-58181?
This vulnerability affects Apache Traffic Server versions 8.0.0 through 10.1.3.
Which versions are recommended to upgrade to in order to fix CVE-2026-58181?
Users are recommended to upgrade to version 9.2.15 or 10.1.4.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.