Traefik 在 v2.11.55 之前存在一个 TLS 选项冲突解决漏洞。该漏洞允许未认证的攻击者通过在多主机路由器上创建相互冲突的 TLS 选项,从而绕过客户端证书(client-certificate)认证。攻击者可以利用单个路由器规则中多个主机名之间共享的 TLS 解析机制,使严格的 mTLS(双向 TLS)要求回退到默认选项,进而访问受保护的后端服务。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-85595 | 9.3 CRITICAL | Traefik before v2.11.55 Authentication Bypass via digestAuth |
| CVE-2026-85596 | 8.2 HIGH | Traefik v3.7 Authentication Bypass via TLS Option Conflict |
| CVE-2026-85594 | 7.0 HIGH | Traefik v3.7.1 crossProviderNamespaces Bypass via Service Middleware |
No comments yet