Vulnerability Description
Tinyproxy through 1.11.3 is vulnerable to HTTP request parsing desynchronization due to a case-sensitive comparison of the Transfer-Encoding header in src/reqs.c. The is_chunked_transfer function uses strcmp to compare the header value against "chunked", even though RFC 7230 specifies that transfer-coding names are case-insensitive.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Tinyproxy Project | Tinyproxy | <= 1.11.3 |
Related Weaknesses (CWE)
References
- https://datatracker.ietf.org/doc/html/rfc7230ExploitTechnical Description
- https://github.com/tinyproxy/tinyproxyProduct
- https://github.com/tinyproxy/tinyproxy/issues/604ExploitIssue Tracking
FAQ
What is CVE-2026-31842?
CVE-2026-31842 is a vulnerability with a CVSS score of 7.5 (HIGH). Tinyproxy through 1.11.3 is vulnerable to HTTP request parsing desynchronization due to a case-sensitive comparison of the Transfer-Encoding header in src/reqs.c. The is_chunked_transfer function uses...
How severe is CVE-2026-31842?
CVE-2026-31842 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-31842?
Check the references section above for vendor advisories and patch information. Affected products include: Tinyproxy Project Tinyproxy.