
Cloudflare
Security•2026-03-09
Fixing request smuggling vulnerabilities in Pingora OSS deployments
This post explains three HTTP/1.x request smuggling vulnerabilities (CVE-2026-2833, CVE-2026-2835, CVE-2026-2836) found in the Pingora open source proxy framework, patched in version 0.8.0.