CVE-2019-3554: Facebook Wangle

Medium severity, CVSS 5.9. EPSS: 1.1% chance of exploitation in the next 30 days.

Wangle's AcceptRoutingHandler incorrectly casts a socket when accepting a TLS 1.3 connection, leading to a potential denial of service attack against systems accepting such connections. This affects versions of Wangle prior to v2019.01.14.00

Affected products

  • Facebook Wangle: before 2019.01.14.00 (fixed in 2019.01.14.00)

Published 2019-01-15. Last modified 2026-06-17.