| CVE |
Severity |
CVSS |
Risk |
Published |
Description |
Impact |
| CVE-2026-40912 |
high |
8.2 |
8.2 |
27d ago |
Traefik has an StripPrefixRegex Middleware Authorization Bypass via Path/RawPath Desync |
|
| CVE-2026-41174 |
medium |
6.4 |
6.4 |
27d ago |
Traefik Kubernetes CRD allows unauthorized cross-namespace middleware binding |
|
| CVE-2026-41263 |
low |
3.7 |
3.7 |
27d ago |
Traefik: A timing side-channel vulnerability allows for valid username enumeration via BasicAuth middleware |
|
| CVE-2021-32813 |
low |
— |
2.5 |
5y ago |
Header dropping in traefik in github.com/traefik/traefik |
|