CYBER CODE RED

Get real-time updates on Telegram

Verified

CVE-2026-56866: net/http 0 to before 1.26.9, 1.27.0-0 to before 1.27.2; +1 more affected products

Affected technology

net/http · 0 to before 1.26.9, 1.27.0-0 to before 1.27.2
Go standard library

net/http/httputil · 0 to before 1.26.9, 1.27.0-0 to before 1.27.2
Go standard library

Component: Not specified by the source
Function: persistConn.readLoop, Client.CloseIdleConnections, Client.Do, Client.Get, Client.Head, Client.Post, Client.PostForm, ClientConn.Close, ClientConn.RoundTrip, Get, Head, Post, PostForm, Transport.CloseIdleConnections, Transport.NewClientConn, Transport.RoundTrip, http1ClientConn.Close, http1ClientConn.RoundTrip, ReverseProxy.ServeHTTP, DumpRequestOut

What an attacker can do

The source does not specify what an attacker can achieve.

Published

KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2026-56866.html