Apache Traffic Server was found to have a desynchronization zero-day vulnerability (CVE-2026-63078) during research by PortSwigger. The issue has been patched, but the exact fixed release is not yet publicly documented.
Apache Traffic Server was found to have a desynchronization zero-day vulnerability (CVE-2026-63078) during research by PortSwigger. The issue has been patched, but the exact fixed release is not yet publicly documented.