VulnSea

traefik has 55 CVEs on record between 2021 and 2026. Disclosure cadence is accelerating: 25 in the last 90 days against 9 in the 90 before. The busiest recent month was September 2026 with 14. The median CVSS is 7.5 (high), with 9 rated critical. None have a confirmed exploitation report. The dominant weakness classes are CWE-863 (8) and CWE-770 (5). Most affected products: traefik (24), github.com/traefik/traefik/v2 (15), github.com/traefik/traefik/v3 (10).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
7.5
Publish → KEV
—
Last 90 days
25 prev 9

Products

  • traefik 24
  • github.com/traefik/traefik/v2 15
  • github.com/traefik/traefik/v3 10
  • github.com/traefik/traefik 6
55
Total CVEs
9
Critical
0
CISA KEV
0
Exploited

traefik vulnerabilities

CVEs affecting traefik, newest first. Open any entry for full detail, references, and exploit status.

55 CVEsRSS

CVE-2026-53622High
3mo ago

Traefik: HTTP/3 mTLS bypass via exact SNI TLSOptions lookup for wildcard and mixed-case hosts

Traefik: HTTP/3 mTLS bypass via exact SNI TLSOptions lookup for wildcard and mixed-case hosts

▾ TwilightTraefik · TraefikEPSS 0.63%via GHSA
CVE-2026-48020HighPoC
3mo ago

Traefik has a StripPrefix Route-Level Auth Bypass via Path Normalization

Traefik has a StripPrefix Route-Level Auth Bypass via Path Normalization

▾ Midnighttraefik · github.com/traefik/traefik/v2EPSS 0.78%via GHSA
CVE-2026-41181Medium
4mo ago

Traefik's errors middleware forwards Authorization and Cookie headers to separate error page service

Traefik's errors middleware forwards Authorization and Cookie headers to separate error page service

▾ Sunlittraefik · github.com/traefik/traefik/v2EPSS 0.50%via OSV
CVE-2026-40912High· 8.2
5mo ago

Traefik has an StripPrefixRegex Middleware Authorization Bypass via Path/RawPath Desync

Traefik has an StripPrefixRegex Middleware Authorization Bypass via Path/RawPath Desync

▾ Twilighttraefik · github.com/traefik/traefik/v3EPSS 0.72%via OSV
GHSA-46wh-3698-f2cxHigh
6mo ago

Traefik: Deny Rule Bypass via Unauthenticated Malicious gRPC Requests in gRPC-Go Dependency (CVE-2026-33186)

Traefik: Deny Rule Bypass via Unauthenticated Malicious gRPC Requests in gRPC-Go Dependency (CVE-2026-33186)

▾ Twilighttraefik · github.com/traefik/traefik/v2via OSV
CVE-2026-32695Medium
6mo ago

Traefik has Knative Ingress Rule Injection that Allows Host Restriction Bypass

Traefik has Knative Ingress Rule Injection that Allows Host Restriction Bypass

▾ Sunlittraefik · github.com/traefik/traefik/v3EPSS 0.53%via OSV
CVE-2026-25949High· 7.5
7mo ago

Traefik is an HTTP reverse proxy and load balancer

Traefik is an HTTP reverse proxy and load balancer. Prior to 3.6.8, there is a potential vulnerability in Traefik managing STARTTLS requests. An unauthenticated client can bypass Traefik entrypoint respondingTimeouts.readTimeout by sendi…

▾ Twilighttraefik · traefikEPSS 0.82%via NVD
CVE-2025-66491Medium· 5.9
9mo ago

Traefik Inverted TLS Verification Logic in ingress-nginx Provider

Traefik Inverted TLS Verification Logic in ingress-nginx Provider

▾ Sunlittraefik · github.com/traefik/traefik/v3EPSS 0.22%via OSV
GHSA-3wqc-mwfx-672pHigh· 7.5
1y ago

Traefik affected by Go oauth2/jws Improper Validation of Syntactic Correctness of Input vulnerability

Traefik affected by Go oauth2/jws Improper Validation of Syntactic Correctness of Input vulnerability

▾ Twilighttraefik · github.com/traefik/traefik/v3via OSV
GO-2024-2941None
2y ago

ACME DNS: Azure Identity Libraries Elevation of Privilege Vulnerability in github.com/traefik/traefik

ACME DNS: Azure Identity Libraries Elevation of Privilege Vulnerability in github.com/traefik/traefik

▾ Sunlittraefik · github.com/traefik/traefikvia OSV
GHSA-rvj4-q8q5-8grfMedium· 5.5
2y ago

ACME DNS: Azure Identity Libraries Elevation of Privilege Vulnerability

ACME DNS: Azure Identity Libraries Elevation of Privilege Vulnerability

▾ Sunlittraefik · github.com/traefik/traefik/v3via OSV
GO-2024-2917None
2y ago

Traefik has unexpected behavior with IPv4-mapped IPv6 addresses in github.com/traefik/traefik

Traefik has unexpected behavior with IPv4-mapped IPv6 addresses in github.com/traefik/traefik

▾ Sunlittraefik · github.com/traefik/traefikvia OSV
GHSA-7jmw-8259-q9jxMedium
2y ago

Traefik has unexpected behavior with IPv4-mapped IPv6 addresses

Traefik has unexpected behavior with IPv4-mapped IPv6 addresses

▾ Sunlittraefik · github.com/traefik/traefik/v3via OSV
GO-2024-2880None
2y ago

Traefik vulnerable to GO issue allowing malformed DNS message to cause infinite loop in github.com/traefik/traefik

Traefik vulnerable to GO issue allowing malformed DNS message to cause infinite loop in github.com/traefik/traefik

▾ Sunlittraefik · github.com/traefik/traefikvia OSV
GO-2024-2726None
2y ago

Traefik affected by HTTP/2 CONTINUATION flood in net/http in github.com/traefik/traefik

Traefik affected by HTTP/2 CONTINUATION flood in net/http in github.com/traefik/traefik

▾ Sunlittraefik · github.com/traefik/traefikvia OSV
GHSA-f7cq-5v43-8pwpMedium· 5.3
2y ago

Traefik vulnerable to GO issue allowing malformed DNS message to cause infinite loop

Traefik vulnerable to GO issue allowing malformed DNS message to cause infinite loop

▾ Sunlittraefik · github.com/traefik/traefik/v2via OSV
GHSA-7f4j-64p6-5h5vMedium
2y ago

Traefik affected by HTTP/2 CONTINUATION flood in net/http

Traefik affected by HTTP/2 CONTINUATION flood in net/http

▾ Sunlittraefik · github.com/traefik/traefik/v2via OSV
CVE-2023-47106Medium· 6.5
2y ago

Traefik incorrectly processes fragment in the URL, leads to Authorization Bypass

Traefik incorrectly processes fragment in the URL, leads to Authorization Bypass

▾ Sunlittraefik · github.com/traefik/traefik/v2EPSS 0.63%via OSV
CVE-2023-47124Medium· 5.9
2y ago

Traefik vulnerable to potential DDoS via ACME HTTPChallenge

Traefik vulnerable to potential DDoS via ACME HTTPChallenge

▾ Sunlittraefik · github.com/traefik/traefik/v2EPSS 0.79%via OSV
CVE-2023-47633High· 7.5
2y ago

Traefik docker container using 100% CPU

Traefik docker container using 100% CPU

▾ Twilighttraefik · github.com/traefik/traefik/v2EPSS 1.3%via OSV
CVE-2023-29013High· 7.5
3y ago

Traefik HTTP header parsing could cause a denial of service

Traefik HTTP header parsing could cause a denial of service

▾ Twilighttraefik · github.com/traefik/traefik/v2EPSS 1.1%via OSV
CVE-2022-23469Low· 3.5
3y ago

Traefik may display authorization header in the debug logs

Traefik may display authorization header in the debug logs

▾ Sunlittraefik · github.com/traefik/traefik/v2EPSS 1.0%via OSV
CVE-2022-46153Medium· 6.5
3y ago

Traefik routes exposed with an empty TLSOption

Traefik routes exposed with an empty TLSOption

▾ Sunlittraefik · github.com/traefik/traefik/v2EPSS 0.51%via OSV
CVE-2020-15129Medium· 6.1PoC
4y ago

Traefik vulnerable to Open Redirect via handling of X-Forwarded-Prefix header

Traefik vulnerable to Open Redirect via handling of X-Forwarded-Prefix header

▾ Twilighttraefik · github.com/traefik/traefikEPSS 8.0%via OSV
CVE-2021-32813Medium· 4.8
5y ago

Header dropping in traefik

Header dropping in traefik

▾ Sunlittraefik · github.com/traefik/traefik/v2EPSS 1.1%via OSV
traefik vulnerabilities (CVEs) — page 2 · VulnSea