Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Kona Arctic

Researcher fromWeHack
#31269of 53,633
8.2Total CVSS
Vulnerabilities · 1
PT-2026-28762
8.2
2026-01-01
Libsoup · Libsoup · CVE-2026-5119
**Name of the Vulnerable Software and Affected Versions** libsoup (affected versions not specified) **Description** A security issue exists in libsoup where sensitive session cookies are transmitted in cleartext when establishing HTTPS tunnels through a configured HTTP proxy. This occurs within the initial HTTP CONNECT request, potentially allowing a network-positioned attacker or a malicious HTTP proxy to intercept these cookies. Successful interception could lead to session hijacking or user impersonation. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.