LiteSpeed CVE-2026-93903
CVE-2026-93903 is a vulnerability in LiteSpeed Web Server builds before 6.3.7 build 1, where internal redirect URL validation is mishandled in a certain corner case. NVD rates it Critical with a CVSS 3.1 base score of 9.4. Anyone running an affected LiteSpeed Web Server build should update to 6.3.7 build 1 or later.
Что это значит по лицензии SharedLicense
Because redirect URL validation fails in an edge case, an attacker may be able to reach internal targets through crafted requests; the full exploitability window is described only as a corner case by NVD.
LiteSpeed Web Server (LSWS) before 6.3.7 build 1 mishandles internal redirect URL validation in a certain “corner case.”
Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-93903
Часто задаваемые вопросы
What is CVE-2026-93903?
Which LiteSpeed versions are affected?
How do I fix CVE-2026-93903?
Is CVE-2026-93903 being exploited in the wild?
Источники
Проверьте систему на уязвимости
Выберите продукт и операционную систему, чтобы увидеть точные команды исправления.
Проверьте свою систему