A long-lived flaw in Squid’s FTP gateway path, tracked as CVE-2026-47729, highlights how legacy protocol support can still put credentials and other header-based secrets at risk.
A parser bug in a decades-old proxy path shows how legacy C code can keep leaking risk long after the original mistake was made.
A decades-old Squid flaw shows how one compatibility feature, if it reads past its bounds, can turn routine proxy traffic into a data exposure risk.
A 29-year-old read-past-end bug in Squid shows how legacy protocol glue can still leak sensitive request data between users who share the same proxy boundary.