Back to search
CVE-2025-58136
Published: Apr 2, 2026
Modified: Apr 2, 2026
PUBLISHED
Description
A bug in POST request handling causes a crash under a certain condition. This issue affects Apache Traffic Server: from 10.0.0 through 10.1.1, from 9.0.0 through 9.2.12. Users are recommended to upgrade to version 10.1.2 or 9.2.13, which fix the issue. A workaround for older versions is to set proxy.config.http.request_buffer_enabled to 0 (the default value is 0).
| Vendor | Product | Versions |
|---|---|---|
Apache Software Foundation | Apache Traffic Server | affected 10.0.0 - <= 10.1.1affected 9.0.0 - <= 9.2.12 |
Weaknesses (CWE)
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now