All 2 CVE vulnerabilities found in fabio, with AI-generated Chinese analysis, references, and POCs.
Vendor: fabiolb
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-62987 | Fabio - Incomplete fix for CVE-2025-48865: operator-configured trust headers (clientip/tls/requestid) still strippable via the Connection header CWE-290 | 5.8 | Medium | 2026-09-21 |
| CVE-2025-48865 | Fabio allows HTTP clients to manipulate custom headers it adds CWE-345 | 9.1 | Critical | 2025-05-30 |
All 2 known CVE vulnerabilities affecting fabio with full Chinese analysis, references, and POCs where available.