Looking for the vulnerability index of Invicti's legacy products?
Jboss EAP Improper Input Validation Vulnerability - CVE-2025-12543 - Vulnerability Database

Jboss EAP Improper Input Validation Vulnerability - CVE-2025-12543

Critical
Reference: CVE-2025-12543
Title: Jboss EAP Improper Input Validation Vulnerability
Overview:

A flaw was found in the Undertow HTTP server core which is used in WildFly JBoss EAP and other Java applications. The Undertow library fails to properly validate the Host header in incoming HTTP requests.As a result requests containing malformed or malicious Host headers are processed without rejection enabling attackers to poison caches perform internal network scans or hijack user sessions.