A vulnerability has been found in Apache Traffic Server up to 8.1.9/9.2.14/10.1.3 and classified as critical. This impacts an unknown function. The manipulation leads to improper access controls.

This vulnerability is uniquely identified as CVE-2026-58159. The attack is possible to be carried out remotely. No exploit exists.

The affected component should be upgraded.