CVE-2020-26129: JetBrains Ktor

Medium severity, CVSS 6.5. EPSS: 0.8% chance of exploitation in the next 30 days.

In JetBrains Ktor before 1.4.1, HTTP request smuggling was possible.

Affected products

  • JetBrains Ktor: before 1.4.1 (fixed in 1.4.1)

Published 2020-11-16. Last modified 2026-06-17.