CVE-2026-55688 | AsyncHttpClient async-http-client up to 2.15.x/3.0.10 HTTP Response sensitive cookie with improper samesite attribute (GHSA-m452-q8c9-rg2f)
A vulnerability was found in AsyncHttpClient async-http-client up to 2.15.x/3.0.10. It has been rated as problematic. Affected by this vulnerability is an unknown functionality of the component HTTP Response Handler. The manipulation leads to sensitive cookie with improper samesite attribute.
This vulnerability is listed as CVE-2026-55688. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is advised.VulDB Recent EntriesRead More