VDB
CVE-2026-73512
CVE-2026-73512
PUBLISHED
CVSS 7.5 HIGH
Envoy: use-after-free in QUIC on internal redirects
EPSS 0.87% · 57.6th percentile
Risk Scores
CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
0.87%
57.6th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | envoy | 0, 1.37.0, 1.38.0 |
Timeline
- Aug 26, 2026 CVE Published
- Sep 22, 2026 EPSS Score
- Sep 22, 2026 CVE Updated
- Sep 24, 2026 EPSS Score
- Sep 26, 2026 EPSS Score
- Sep 30, 2026 EPSS Score
- Oct 3, 2026 EPSS Score
- Oct 6, 2026 EPSS Score
References
- https://github.com/envoyproxy/envoy/commit/29dbaae4a9971011e2f1948acfaf383296e901ea url
- https://github.com/envoyproxy/envoy/commit/85495163fdc67364a5258bfe478c34a44f6428b4 url
- https://github.com/envoyproxy/envoy/commit/c0e46dabc3ac286bbe608e9274776555911aadb9 url
- https://github.com/envoyproxy/envoy/commit/f2417eec2ff49abe243d484ded916fbc2faca38d url
- https://github.com/envoyproxy/envoy/releases/tag/v1.36.10 url
- https://github.com/envoyproxy/envoy/releases/tag/v1.37.6 url
- https://github.com/envoyproxy/envoy/releases/tag/v1.38.4 url
- https://github.com/envoyproxy/envoy/releases/tag/v1.39.1 url
- https://github.com/envoyproxy/envoy/security/advisories/GHSA-r6j2-mrm5-72mg url
- https://nvd.nist.gov/vuln/detail/CVE-2026-73512 url