CVE-2018-21245: Apsis Pound

Critical severity, CVSS 9.1. EPSS: 1.1% chance of exploitation in the next 30 days.

Pound before 2.8 allows HTTP request smuggling, a related issue to CVE-2016-10711.

Affected products

  • Apsis Pound: before 2.8 (fixed in 2.8)

Published 2020-06-15. Last modified 2026-06-17.