Traefik versions before v2.11.55 and versions v3.0.0 through v3.7.10 contain an authentication bypass vulnerability in the digestAuth middleware where unknown usernames receive an empty secret instea…
Critical CVSS 9.8
Summary
Traefik versions before v2.11.55 and versions v3.0.0 through v3.7.10 contain an authentication bypass vulnerability in the digestAuth middleware where unknown usernames receive an empty secret instead of rejection. Attackers can compute a valid digest response using the empty secret and arbitrary credentials to bypass authentication on any digestAuth-protected route without a valid username or password.
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://github.com/traefik/traefik/security/advisories/GHSA-5w68-77r2-r64c Patch
- https://www.vulncheck.com/advisories/traefik-before-2.11.55-authentication-bypass-via-digestauth Third Party Advisory
Timeline
- nvd_ingest NVD