CVE-2023-45539
published 2023-11-28CVE-2023-45539: HAProxy before 2.8.2 accepts # as part of the URI component, which might allow remote attackers to obtain sensitive information or have unspecified other…
PriorityP342high8.2CVSS 3.1
AVNACLPRNUINSUCHILAN
EPSS
1.53%
71.8th percentile
HAProxy before 2.8.2 accepts # as part of the URI component, which might allow remote attackers to obtain sensitive information or have unspecified other impact upon misinterpretation of a path_end rule, such as routing index.html#.png to a static server.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | haproxy | < haproxy 2.6.12-1+deb12u1 (bookworm) | haproxy 2.6.12-1+deb12u1 (bookworm) |
| haproxy | haproxy | < 2.8.2 | 2.8.2 |
| haproxy | haproxy | >= 0 < 2.2.9-2+deb11u6 | 2.2.9-2+deb11u6 |
| haproxy | haproxy | >= 0 < 2.6.12-1+deb12u1 | 2.6.12-1+deb12u1 |
| haproxy | haproxy | >= 0 < 2.6.15-1 | 2.6.15-1 |
| haproxy | haproxy | >= 0 < 2.6.15-1 | 2.6.15-1 |
| msrc | cbl2_haproxy_2.4.24-1_on_cbl_mariner_2.0 | — | — |
CVSS provenance
nvdv3.18.2HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
osv8.2HIGH
vendor_debian8.2HIGH
vendor_msrc8.2HIGH
vendor_redhat8.2HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
HAProxy vulnerability
vendor_ubuntu·2024-07-23
CVE-2023-45539 HAProxy vulnerability
Title: HAProxy vulnerability
Summary: HAProxy could be made to expose sensitive information.
Seth Manesse and Paul Plasil discovered that HAProxy incorrectly handled
URI components containing the hash character (#). A remote attacker could
possibly use this issue to obtain sensitive information, or to bypass
certain path_end rules.
Instructions: In general, a standard system update will make all the necessary changes.
Ubuntu
HAProxy vulnerability
vendor_ubuntu·2023-12-05
CVE-2023-45539 HAProxy vulnerability
Title: HAProxy vulnerability
Summary: HAProxy could be made to expose sensitive information.
It was discovered that HAProxy incorrectly handled URI components
containing the hash character (#). A remote attacker could possibly use
this issue to obtain sensitive information, or to bypass certain path_end
rules.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
haproxy: untrimmed URI fragments may lead to exposure of confidential data on static servers
vendor_redhat·2023-11-28·CVSS 8.2
CVE-2023-45539 [HIGH] CWE-288 haproxy: untrimmed URI fragments may lead to exposure of confidential data on static servers
haproxy: untrimmed URI fragments may lead to exposure of confidential data on static servers
HAProxy before 2.8.2 accepts # as part of the URI component, which might allow remote attackers to obtain sensitive information or have unspecified other impact upon misinterpretation of a path_end rule, such as routing index.html#.png to a static server.
Package: haproxy (Red Hat Ceph Storage 5) - Out of support scope
Microsoft
HAProxy before 2.8.2 accepts # as part of the URI component, which might allow remote attackers to obtain sensitive information or have unspecified other impact upon misinterpretation of a path_end ru
vendor_msrc·2023-11-14·CVSS 8.2
CVE-2023-45539 [HIGH] HAProxy before 2.8.2 accepts # as part of the URI component, which might allow remote attackers to obtain sensitive information or have unspecified other impact upon misinterpretation of a path_end ru
HAProxy before 2.8.2 accepts # as part of the URI component, which might allow remote attackers to obtain sensitive information or have unspecified other impact upon misinterpretation of a path_end rule, such as routing index.html#.png to a static server.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact t
Debian
CVE-2023-45539: haproxy - HAProxy before 2.8.2 accepts # as part of the URI component, which might allow r...
vendor_debian·2023·CVSS 8.2
CVE-2023-45539 [HIGH] CVE-2023-45539: haproxy - HAProxy before 2.8.2 accepts # as part of the URI component, which might allow r...
HAProxy before 2.8.2 accepts # as part of the URI component, which might allow remote attackers to obtain sensitive information or have unspecified other impact upon misinterpretation of a path_end rule, such as routing index.html#.png to a static server.
Scope: local
bookworm: resolved (fixed in 2.6.12-1+deb12u1)
bullseye: resolved (fixed in 2.2.9-2+deb11u6)
forky: resolved (fixed in 2.6.15-1)
sid: resolved (fixed in 2.6.15-1)
trixie: resolved (fixed in 2.6.15-1)
OSV
CVE-2023-45539: HAProxy before 2
osv·2023-11-28·CVSS 8.2
CVE-2023-45539 [HIGH] CVE-2023-45539: HAProxy before 2
HAProxy before 2.8.2 accepts # as part of the URI component, which might allow remote attackers to obtain sensitive information or have unspecified other impact upon misinterpretation of a path_end rule, such as routing index.html#.png to a static server.
GHSA
GHSA-79q7-m98p-qvhp: HAProxy before 2
ghsa_unreviewed·2023-11-28
CVE-2023-45539 [HIGH] CWE-116 GHSA-79q7-m98p-qvhp: HAProxy before 2
HAProxy before 2.8.2 accepts # as part of the URI component, which might allow remote attackers to obtain sensitive information or have unspecified other impact upon misinterpretation of a path_end rule, such as routing index.html#.png to a static server.
No detection rules found.
No public exploits indexed.
arXiv
Cybersecurity AI Benchmark (CAIBench): A Meta-Benchmark for Evaluating Cybersecurity AI Agents
arxiv_fulltext·2025-10-28
Cybersecurity AI Benchmark (CAIBench): A Meta-Benchmark for Evaluating Cybersecurity AI Agents
-1em
## Abstract
Cybersecurity spans multiple interconnected domains, complicating the development of meaningful, labor-relevant benchmarks. Existing benchmarks assess isolated skills rather than integrated performance. We find that pre-trained knowledge of cybersecurity in LLMs does not imply attack and defense abilities, revealing a gap between knowledge and capability. To address this limitation, we present the Cybersecurity AI Benchmark (CAIBench), a modular meta-benchmark framework that allows evaluating LLM models and agents across offensive and defensive cybersecurity domains, taking a step towards meaningfully measuring their labor-relevance. CAIBench integrates five evaluation categories, covering over 10,000 instances: Jeopardy-style CTFs, Attack and Defense CTFs, Cyber Range e
CTF
[Medium] LockTalk / README
ctf_writeups·2024·CVSS 9.1
[CRITICAL] [Medium] LockTalk / README
LockTalk
DDth Feb 2024
Challenge Author(s): **dhmosfunk**
### Description:
In "The Ransomware Dystopia," LockTalk emerges as a beacon of resistance against the rampant chaos inflicted by ransomware groups. In a world plunged into turmoil by malicious cyber threats, LockTalk stands as a formidable force, dedicated to protecting society from the insidious grip of ransomware. Chosen participants, tasked with representing their districts, navigate a perilous landscape fraught with ethical quandaries and treacherous challenges orchestrated by LockTalk. Their journey intertwines with the organization's mission to neutralize ransomware threats and restore order to a fractured world. As players confront internal struggles and external adversaries, their decisions shape the fate of not only
CTF
README
ctf_writeups·2024
README
# [__Challenges__](#challenges)
| Category | Name | Objective | Difficulty [⭐⭐⭐⭐⭐] |
|---------------|------------------------------------------------------------------------------------------|-------------------------------------------------------------------|-------------------------|
| **Crypto** | [Dynastic](crypto/%5BVery%20Easy%5D%20Dynastic) | Caesar Cipher with increasing shift | ⭐ |
| **Crypto** | [Makeshift](crypto/%5BVery%20Easy%5D%20Makeshift) | Reverse a simple custom "encryption" algorithm | ⭐ |
| **Crypto** | [Primary Knowledge](crypto/%5BVery%20Easy%5D%20Primary%20Knowledge) | RSA with prime n which makes retrieving d trivial | ⭐ |
| **Crypto** | [Blunt](crypto/%5BEasy%5D%20Blunt) | Numerically small p resulting in solving the DLP easily | ⭐⭐ |
| **Crypto** | [Iced Tea](cry
https://git.haproxy.org/?p=haproxy.git%3Ba=commit%3Bh=2eab6d354322932cfec2ed54de261e4347eca9a6https://lists.debian.org/debian-lts-announce/2023/12/msg00010.htmlhttps://lists.w3.org/Archives/Public/ietf-http-wg/2023JulSep/0070.htmlhttps://www.mail-archive.com/haproxy%40formilux.org/msg43861.htmlhttps://git.haproxy.org/?p=haproxy.git%3Ba=commit%3Bh=2eab6d354322932cfec2ed54de261e4347eca9a6https://lists.debian.org/debian-lts-announce/2023/12/msg00010.htmlhttps://lists.w3.org/Archives/Public/ietf-http-wg/2023JulSep/0070.htmlhttps://www.mail-archive.com/haproxy%40formilux.org/msg43861.html
2023-11-28
Published