CyberRota Analysis
AI-GeneratedThe webp_transform plugin in Apache Traffic Server versions 8.0.0 to 8.1.9, 9.0.0 to 9.2.14, and 10.0.0 to 10.1.3 is vulnerable to unsafe decoding, potentially serving mislabeled and cacheable responses. This could lead to unauthorized content being delivered to users, posing a significant risk to web application integrity and user trust. Organizations using affected versions should prioritize upgrading to versions 9.2.15 or 10.1.4 to mitigate this high-severity vulnerability.
Original NVD Description
The Apache Traffic Server webp_transform plugin can decode unsafely and serve mislabeled, cacheable responses. This issue affects Apache Traffic Server: from 8.0.0 through 8.1.9, from 9.0.0 through 9.2.14, from 10.0.0 through 10.1.3. Users are recommended to upgrade to version 9.2.15 or 10.1.4, which fix the issue.
Related CVEs
Other vulnerabilities affecting the same vendor(s)