Undertow-core: undertow http server fails to reject malformed host headers leading to potential cache poisoning and ssrf (CVE-2025-12543)

Brocade Fabric OS

2 more products

36876

26 January 2026

26 January 2026

CLOSED

LOW

9.6:CRITICAL -- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:L

CVE-2025-12543