Traefik

Traefik

24 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.01%
  • Veröffentlicht 09.12.2025 00:38:39
  • Zuletzt bearbeitet 09.12.2025 18:37:13

Traefik is an HTTP reverse proxy and load balancer. Versions 3.5.0 through 3.6.2 have inverted TLS verification logic in the nginx.ingress.kubernetes.io/proxy-ssl-verify annotation. Setting the annotation to "on" (intending to enable backend TLS cert...

  • EPSS 0.01%
  • Veröffentlicht 09.12.2025 00:35:26
  • Zuletzt bearbeitet 09.12.2025 18:37:13

Traefik is an HTTP reverse proxy and load balancer. For versions prior to 2.11.32 and 2.11.31 through 3.6.2, requests using PathPrefix, Path or PathRegex matchers can bypass path normalization. When Traefik uses path-based routing, requests containin...

  • EPSS 1.29%
  • Veröffentlicht 01.08.2025 23:32:21
  • Zuletzt bearbeitet 26.11.2025 14:02:03

Traefik is an HTTP reverse proxy and load balancer. In versions 2.11.27 and below, 3.0.0 through 3.4.4 and 3.5.0-rc1, a path traversal vulnerability was discovered in WASM Traefik’s plugin installation mechanism. By supplying a maliciously crafted ZI...

  • EPSS 0.03%
  • Veröffentlicht 30.05.2025 03:37:12
  • Zuletzt bearbeitet 25.11.2025 15:10:59

Traefik (pronounced traffic) is an HTTP reverse proxy and load balancer. Prior to versions 2.11.25 and 3.4.1, there is a potential vulnerability in Traefik managing the requests using a PathPrefix, Path or PathRegex matcher. When Traefik is configure...

  • EPSS 0.04%
  • Veröffentlicht 21.04.2025 15:34:04
  • Zuletzt bearbeitet 25.11.2025 15:13:09

Traefik (pronounced traffic) is an HTTP reverse proxy and load balancer. In versions prior to 2.11.24, 3.3.6, and 3.4.0-rc2. There is a potential vulnerability in Traefik managing the requests using a PathPrefix, Path or PathRegex matcher. When Traef...

  • EPSS 0.15%
  • Veröffentlicht 29.11.2024 19:15:08
  • Zuletzt bearbeitet 25.11.2025 13:48:57

Traefik (pronounced traffic) is an HTTP reverse proxy and load balancer. There is a vulnerability in Traefik that allows the client to provide the X-Forwarded-Prefix header from an untrusted source. This issue has been addressed in versions 2.11.14 a...

  • EPSS 13.95%
  • Veröffentlicht 19.09.2024 23:15:11
  • Zuletzt bearbeitet 25.09.2024 17:39:08

Traefik is a golang, Cloud Native Application Proxy. When a HTTP request is processed by Traefik, certain HTTP headers such as X-Forwarded-Host or X-Forwarded-Port are added by Traefik before the request is routed to the application. For a HTTP clien...

  • EPSS 0.18%
  • Veröffentlicht 05.07.2024 18:15:32
  • Zuletzt bearbeitet 25.11.2025 14:08:47

Traefik is an HTTP reverse proxy and load balancer. Versions prior to 2.11.6, 3.0.4, and 3.1.0-rc3 have a vulnerability that allows bypassing IP allow-lists via HTTP/3 early data requests in QUIC 0-RTT handshakes sent with spoofed IP addresses. Versi...

  • EPSS 0.75%
  • Veröffentlicht 12.04.2024 22:15:07
  • Zuletzt bearbeitet 26.11.2025 13:12:13

Traefik is an HTTP reverse proxy and load balancer. In affected versions sending a GET request to any Traefik endpoint with the "Content-length" request header results in an indefinite hang with the default configuration. This vulnerability can be ex...

Exploit
  • EPSS 0.64%
  • Veröffentlicht 04.12.2023 21:15:34
  • Zuletzt bearbeitet 21.11.2024 08:30:34

Traefik is an open source HTTP reverse proxy and load balancer. The traefik docker container uses 100% CPU when it serves as its own backend, which is an automatically generated route resulting from the Docker integration in the default configuration...