Input Validation Flaw in XQUIC Product from Alibaba
CVE-2026-6328
8.3HIGH
What is CVE-2026-6328?
An input validation flaw exists in the XQUIC Project's implementation of the QUIC protocol, specifically within the packet processing and STREAM frame handler modules. This vulnerability may allow attackers to manipulate the protocol by exploiting improper verification of cryptographic signatures, potentially compromising the integrity of communications. Affected versions include XQUIC through 1.8.3.
Affected Version(s)
XQUIC Linux 0 <= 1.8.3
