Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Kona Arctic

Pesquisador deWeHack
#31354de 53,779
8.2CVSS total
Vulnerabilidades · 1
PT-2026-28762
8.2
2026-01-01
Libsoup · Libsoup · CVE-2026-5119
**Name of the Vulnerable Software and Affected Versions** libsoup (affected versions not specified) **Description** A security issue exists in libsoup where sensitive session cookies are transmitted in cleartext when establishing HTTPS tunnels through a configured HTTP proxy. This occurs within the initial HTTP CONNECT request, potentially allowing a network-positioned attacker or a malicious HTTP proxy to intercept these cookies. Successful interception could lead to session hijacking or user impersonation. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.