📦 Traffic Control

by Apache

🔍 What is Traffic Control?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-45387

CRITICAL CVSS 9.9 Dec 23, 2024

An SQL injection vulnerability in Apache Traffic Control's Traffic Ops component allows authenticated users with specific privileged roles (admin, federation, operations, portal, or steering) to execu...

CVE-2021-43350

CRITICAL CVSS 9.8 Nov 11, 2021

CVE-2021-43350 is an LDAP injection vulnerability in Apache Traffic Control Traffic Ops that allows unauthenticated attackers to manipulate LDAP filters through specially-crafted usernames. This can l...

CVE-2025-61581

HIGH CVSS 7.5 Oct 16, 2025

This CVE describes an Inefficient Regular Expression Complexity (ReDoS) vulnerability in Apache Traffic Control's Traffic Router management interface. Attackers with access to this interface can craft...

CVE-2022-23206

HIGH CVSS 7.5 Feb 6, 2022

This vulnerability allows unprivileged users to perform port scanning on internal networks via Apache Traffic Control Traffic Ops. Attackers can send specially crafted POST requests to the /user/login...