Security Advisory

CVE-2026-10836

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-17 11:10:49
Last updated 2026-06-17 14:58:57
Assigner INCIBE
CVSS score 5.1
State PUBLISHED

Description

Improper handling of HTTP headers that allows a remote attacker to manipulate the value of the Host header using specially crafted requests. A successful exploit could result in the generation of manipulated links or responses, potentially leading to limited information disclosure or compromising the integrity of dependent services.