github.com
https://github.com/traefik/traefik GHSA-GV8R-9RW9-9697
Traefik affected by TLS ClientAuth Bypass on HTTP/3
Description
### Summary There is a potential vulnerability in Traefik managing HTTP/3 connections. More details in the [CVE-2025-68121](https://nvd.nist.gov/vuln/detail/CVE-2025-68121). ## Patches - https://github.com/traefik/traefik/releases/tag/v2.11.37 - https://github.com/traefik/traefik/releases/tag/v3.6.8 ## Workarounds No workaround ## For more information If you have any questions or comments about this advisory, please [open an issue](https://github.com/traefik/traefik/issues).
Description source: GitHub Advisory
Affected products and versions
3| Product | Source | Version range | Status |
|---|---|---|---|
github.com/traefik/traefikBrowse Go / github.com/traefik/traefik | GitHub Advisory | Through 1.7.34 | affected |
github.com/traefik/traefik/v2Browse Go / github.com/traefik/traefik/v2 | GitHub Advisory | Before 2.11.37 · Fixed in 2.11.37 | affected |
github.com/traefik/traefik/v3Browse Go / github.com/traefik/traefik/v3 | GitHub Advisory | Before 3.6.8 · Fixed in 3.6.8 | affected |
References
2github.com
https://github.com/traefik/traefik/security/advisories/GHSA-gv8r-9rw9-9697