CVE-2026-55204 | HAProxy up to 3.4.0 Dynamic Table src/hpack-tbl.c hpack_dht_insert null pointer dereference (EUVD-2026-37906 / WID-SEC-2026-2012)
A vulnerability marked as problematic has been reported in HAProxy up to 3.4.0. Affected by this vulnerability is the function hpack_dht_insert of the file src/hpack-tbl.c of the component Dynamic Table Handler. This manipulation causes null pointer dereference.
The identification of this vulnerability is CVE-2026-55204. It is possible to initiate the attack remotely. There is no exploit available.
It is suggested to upgrade the affected component.