CVE-2026-16729

Aliases:UBUNTU-CVE-2026-16729DEBIAN-CVE-2026-16729GHSA-v3r7-h72x-cjcmCGA-3p6x-cm8q-v8c3CGA-5qjm-r8wp-cj34CGA-5w57-fr4h-fc39CGA-68qm-4w4p-q6jjCGA-6jg5-q4rg-cgh9CGA-cjmr-28q2-qr9pCGA-fpxm-w9f4-7g39CGA-ggcg-gv62-wpcfCGA-gvwq-4r2m-fq3gCGA-h2xc-29f8-wv8xCGA-h5rm-p2xq-c6p2CGA-hxmv-xwpr-66qjCGA-mv4x-r95w-h8gmCGA-p2g7-w8gh-rc98CGA-pf47-4jgv-4jmxCGA-pv97-9gf7-cxxvCGA-pwj6-5rxm-q53vCGA-2grq-9mw4-874fCGA-2vq7-w2jq-cf6xCGA-38jg-m8hm-xrvqCGA-3c5v-ggg3-r7fjCGA-46qw-hx9f-87f7CGA-4pww-rppx-53q4CGA-4q22-q77m-mrpxCGA-4rf5-ff22-cjqwCGA-55qj-6g7w-vv32CGA-63fc-rm78-fph5CGA-64gq-8q68-xjc4CGA-6fx6-9x2x-jxw7CGA-6v72-qc9m-f666CGA-743j-7f7p-5rwjCGA-7c73-6p2f-wjjvCGA-893w-83jm-9x74CGA-8cq8-47p4-cx64CGA-8vcm-9g87-mxrgCGA-98gp-c6hp-9c5xCGA-c74c-64hr-7733CGA-cf6j-pvcc-4w97CGA-cj84-25p6-j5q7CGA-f2hq-j4jj-j9v5CGA-fvc8-7wv3-xqh7CGA-fw78-c4pr-xchhCGA-fx3w-jm7j-q6x3CGA-g7q6-wpc9-xmqjCGA-h7rr-4wvr-8q9pCGA-hxp9-m2c2-fh3vCGA-j2w4-j8jx-jm2xCGA-jj46-wpj9-wcf7CGA-mmqq-8743-j7vcCGA-pv49-679c-q29mCGA-qvm2-8fjp-j276CGA-r2r6-jvc8-xc46CGA-r3wp-frv5-w6qvCGA-v7f7-9689-h7mfCGA-v7fc-78qm-pfc8CGA-vhpx-x94f-9v9gCGA-vx9j-phcr-4pwmCGA-w3jf-fc97-9wrjCGA-w9xp-49mm-x2phCGA-wf85-vxmq-5c9mCGA-whfq-q2w3-5f49CGA-wwp6-g9m9-hcxrCGA-x586-m7gj-h489CGA-x8h3-c59x-hgfxCGA-xcp5-mr9h-c9rjCGA-xph7-crcg-65fpCGA-3fg7-xppm-g8ppCGA-jhgx-pffj-3vg6CGA-rf5w-c6cq-rjv6CGA-xrr4-m582-vjxgCGA-59qp-g2jj-989hCGA-gfc7-g8hf-chjgCGA-vpw7-2jjv-99mhCGA-7xm8-q629-xhjfCGA-8rv7-vjgj-89jrCGA-hw4h-g9h7-hp54CGA-rw79-5mxp-ph77CGA-2p5g-9xg3-f55xCGA-x974-32hm-454p
Analyzed
Published: 29 Jul 2026, 16:45
Last modified:29 Jul 2026, 18:08

Vulnerability Summary

Overall Risk (default)
medium
26/100
CVSS Score
6.5 MEDIUM
v3.1 (nvd)
EPSS Score
0.19% LOW
0% probability 0.00%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

29 Jul 2026, 16:45
Published
Vulnerability first disclosed
29 Jul 2026, 18:08
Last Modified
Vulnerability information updated

Description

undici's setCookie function does not fully sanitize cookie attributes. In undici before 6.28.0, from 7.0.0 up to before 7.29.0, and from 8.0.0 up to before 8.9.0, a domain value is not checked for semicolons and entries in the unparsed array are not sanitized, so attacker-influenced input can inject additional cookie attributes. For example, a domain value containing a semicolon can append attributes such as SameSite, and an unparsed entry can inject attributes such as HttpOnly, without the caller setting them. Applications that pass user-controlled input to these fields, such as multi-tenant or reverse-proxy servers that scope session cookies to a tenant-supplied domain, can have SameSite CSRF protections bypassed, or the Secure, HttpOnly, and SameSite attributes forced, stripped, or overridden. The issue is fixed in undici 6.28.0, 7.29.0, and 8.9.0.

CVSS Metrics

  • v3.1MEDIUMScore: 4.8CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N
  • v3.1MEDIUMScore: 6.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N

EPSS Trends

Current EPSS score: 0.19% Percentile: 9%

Techniques & Countermeasures

  • CWE-74Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

    The product constructs all or part of a command, data structure, or record using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify how it is parsed or interpreted when it is sent to a downstream component.

Affected Systems

  • chainguardactions-runner

    < 2.336.0-r5

  • chainguardcode-server

    < 4.130.0-r5

  • chainguardcommercial-gitlab-rails-ee-19.1

    all

  • chainguardcommercial-gitlab-rails-ee-19.2

    all

  • chainguardcommercial-gitlab-rails-ee-19.3

    all

  • chainguardcommercial-gitlab-rails-ee-fips-19.1

    all

  • chainguardcommercial-gitlab-rails-ee-fips-19.2

    all

  • chainguardcommercial-gitlab-rails-ee-fips-19.3

    all

  • chainguardkibana-8.19

    < 8.19.20-r2

  • chainguardkibana-8.19-bitnami

    < 8.19.20-r2

  • chainguardkibana-8.19-iamguarded

    < 8.19.20-r2

  • chainguardkibana-9.1

    all

  • chainguardkibana-9.1-iamguarded

    all

  • chainguardkibana-9.2

    < 9.2.8-r19

  • chainguardkibana-9.2-iamguarded

    < 9.2.8-r19

  • chainguardkibana-9.3

    all

  • chainguardkibana-9.3-iamguarded

    all

  • chainguardlangfuse-3

    < 3.225.0-r3

  • chainguardlangfuse-3-compat

    < 3.225.7-r6

  • chainguardlangfuse-3-worker

    < 3.225.0-r3

  • chainguardlangfuse-4

    < 4.3.1-r3

  • chainguardlangfuse-4-worker

    < 4.3.1-r3

  • chainguardlangfuse-fips-3

    < 3.224.3-r9

  • chainguardlangfuse-fips-3-worker

    < 3.224.3-r9

  • chainguardlangfuse-fips-4

    < 4.4.0-r0

  • chainguardlangfuse-fips-4-worker

    < 4.4.0-r0

  • chainguardnpm-12

    < 12.0.2-r2

  • chainguardpelias-api

    < 7.8.0-r7

  • chainguardprism

    < 5.16.0-r2

  • chainguardpulumi-language-nodejs

    < 3.256.0-r1

  • chainguardrenovate

    < 44.23.3-r1 | < 44.11.3-r0 | < 44.11.4-r0

  • chainguardsaf

    < 1.7.0-r0

  • chainguardvitess-24

    < 24.0.2-r10

  • chainguardvitess-24-compat

    < 24.0.3-r7

  • wolficode-server

    < 4.130.0-r5

  • wolfilangfuse-3

    < 3.225.0-r3

  • wolfilangfuse-3-compat

    < 3.225.7-r6

  • wolfilangfuse-3-worker

    < 3.225.0-r3

  • wolfinpm-12

    < 12.0.2-r2

  • wolfiprism

    < 5.16.0-r2

  • wolfipulumi-language-nodejs

    < 3.256.0-r1

  • wolfirenovate

    < 44.23.3-r1 | < 44.11.3-r0 | < 44.11.4-r0

  • wolfisaf

    < 1.7.0-r0

  • wolfivitess-24

    < 24.0.2-r10

  • wolfivitess-24-compat

    < 24.0.3-r7

  • debiannode-undici

    all | all | < 8.9.0+dfsg+~cs3.2.0-1

  • ubuntunode-undici

    all | all

  • nodejsundici

    < 6.28.0 | ≥ 7.0.0, < 7.29.0 | ≥ 8.0.0, < 8.9.0

  • Npmundici

    < 6.28.0 | ≥ 7.0.0, < 7.29.0 | ≥ 8.0.0, < 8.9.0

  • undiciundici

    < 6.28.0 | ≥ 7.0.0, < 7.29.0 | ≥ 8.0.0, < 8.9.0

References (14)