HIGH Go
GHSA-5r4w-85f3-pw66 · CVE-2026-48491 Traefik: SNICheck ignores wildcard TLSOptions mappings, allowing domain-fronted mTLS bypass
Modified: 6/16/2026
package
pkg:go/Traefik
Traefik: SNICheck ignores wildcard TLSOptions mappings, allowing domain-fronted mTLS bypass
Modified: 6/16/2026
Traefik: HTTP/3 mTLS bypass via exact SNI TLSOptions lookup for wildcard and mixed-case hosts
Modified: 6/16/2026