CVE-2026-107825 | corazawaf Coraza up to 3.7.x Transaction transaction.go ProcessURI input validation

SecurityVulns

A vulnerability described as problematic has been identified in corazawaf Coraza up to 3.7.x. This issue affects the function ProcessURI of the file internal/corazawaf/transaction.go of the component Transaction. The manipulation results in improper input validation.

This vulnerability is known as CVE-2026-107825. It is possible to launch the attack remotely. No exploit is available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More