Security News

Cybersecurity news aggregator

🔓
HIGH Vulnerabilities Microsoft Security Response Center

CVE-2026-3632 Libsoup: libsoup: http smuggling and server-side request forgery via malformed hostnames

The vulnerability CVE-2026-3632 (CVSS 3.9) in the GNOME libsoup library enables HTTP request smuggling and server-side request forgery through the processing of malformed hostnames. Affected versions include libsoup up to and including the versions shipped with Red Hat Enterprise Linux 6.0, 7.0, 8.0, and 9.0. The article provides limited technical detail, and no specific patched version or workaround is stated.
Read Full Article →

We use optional cookies to improve your experience on our websites, such as through social media connections, and to display personalized advertising based on your online activity. If you reject optional cookies, only cookies necessary to provide you the services will be used. You may change your selection by clicking “Manage Cookies” at the bottom of the page. Privacy Statement Third-Party Cookies AcceptRejectManage cookies MSRC  Customer Guidance  Security Update Guide  Vulnerabilities  CVE-2026-3632 Your Privacy Choices Consumer Health Privacy

Share this article