Apache Traffic Server
cpe:2.3:a:apache:traffic_server:*:*:*:*:*:*:*
- >= 9.0.0, <= 9.2.8
- >= 10.0.0, <= 10.0.3
A vulnerability has been identified in Apache Traffic Server versions 10.0.0 through 10.0.3, related to improper access control. This issue allows for access control lists (ACLs) to be incompatible with older versions, potentially leading to unauthorized access or actions.
The vulnerability could result in improper access control, allowing users to bypass restrictions and potentially access or modify resources they should not be able to.
Users of Apache Traffic Server 10.x should upgrade to version 10.0.4 or later. Instructions for upgrading can be found in the Apache Traffic Server documentation.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.