Skip to content

Undertow HTTP Server Vulnerability Allows Attackers to Hijack Sessions in Java Apps

Cyberpress • January 9, 2026

The vulnerability , tracked as CVE-2025-12543, exposes users to session hijacking, cache poisoning, and unauthorized network reconnaissance ...

Extracted Entities

Platforms (1)