Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
Tinyproxy
HIGH 7.5
CVE-2026-31842
Tinyproxy through 1.11.3 is vulnerable to HTTP request parsing desynchronization due to a case-sensitive comparison of the Transfer-Encoding header i…
Fix: after 1.11.3
Fix from $1,950
2026-04-07
Tinyproxy
MEDIUM 6.5
CVE-2025-63938
Tinyproxy through 1.11.2 contains an integer overflow vulnerability in the strip_return_port() function within src/reqs.c.
Fix: after 1.11.2
Fix from $1,600
2025-11-26
Tinyproxy
CRITICAL 9.8
CVE-2023-49606EPSS 63%
A use-after-free vulnerability exists in the HTTP Connection Headers parsing in Tinyproxy 1.11.1 and Tinyproxy 1.10.0. A specially crafted HTTP heade…
Patch available
Fix from $2,300
2024-05-01
Tinyproxy
HIGH 7.5
CVE-2022-40468
Potential leak of left-over heap data if custom error page templates containing special non-standard variables are used. Tinyproxy commit 84f203f and…
Fix: after 1.11.1
Fix from $1,950
2022-09-19
Tinyproxy
MEDIUM 5.5
CVE-2017-11747
main.c in Tinyproxy 1.8.4 and earlier creates a /run/tinyproxy/tinyproxy.pid file after dropping privileges to a non-root account, which might allow …
Fix: after 1.8.4
Fix from $1,600
2017-07-30