CVE Database
/

CVE-2025-58136

Back to search

CVE-2025-58136

Published: Apr 2, 2026

Modified: Apr 2, 2026

PUBLISHED

Description

A bug in POST request handling causes a crash under a certain condition. This issue affects Apache Traffic Server: from 10.0.0 through 10.1.1, from 9.0.0 through 9.2.12. Users are recommended to upgrade to version 10.1.2 or 9.2.13, which fix the issue. A workaround for older versions is to set proxy.config.http.request_buffer_enabled to 0 (the default value is 0).

VendorProductVersions

Apache Software Foundation

Apache Traffic Server

affected
10.0.0 - <= 10.1.1
affected
9.0.0 - <= 9.2.12

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now