CVE-2026-1502
Medium Severity
Description
CR/LF bytes were not rejected by HTTP client proxy tunnel headers or host.
Read more at https://www.tenable.com/cve/CVE-2026-1502
Related Vulnerabilities
- CVE-2026-5982: A vulnerability was found in D-Link DIR-605L 2.13B01. This vulnerability affects the function formAd HIGH
- CVE-2026-33736: Chamilo LMS is a learning management system. Prior to 2.0.0-RC.3, any authenticated user (including MEDIUM
- CVE-2026-4305: The Royal WordPress Backup & Restore Plugin plugin for WordPress is vulnerable to Reflected Cross-Si MEDIUM
- CVE-2025-70797: Cross Site Scripting vulnerability in Limesurvey v.6.15.20+251021 allows a remote attacker to execut MEDIUM
- CVE-2026-6004: A vulnerability was detected in code-projects Simple IT Discussion Forum 1.0. Impacted is an unknown MEDIUM
Related Coverage
Threat Actors