http smuggling

  1. CVE-2026-3632 libsoup Hostname Bug: HTTP Smuggling and SSRF Risk

    CVE-2026-3632 is one of those vulnerabilities that looks deceptively small in a vendor advisory and yet raises immediate architectural questions for anyone who ships or depends on HTTP client libraries. The flaw in libsoup centers on malformed hostnames that can inject special characters into...