A response-header CRLF injection vulnerability in the Proxmox Virtual Environment (PVE) and Proxmox Mail Gateway (PMG) web interface allows a remote attacker to set cookies for a victim's browser that are longer than the server expects, causing a client-side DoS. This affects Chromium-based browsers because they allow injection of response headers with %0d. This is fixed in pve-http-server 4.1-3.
Conclusion & alert: CVE-2022-35507 is rated High Exploit Risk (72.3/100): CVSS High severity, with high exploitation likelihood (EPSS 32.11%, 97th percentile). Core evidence: 1 public exploit reference(s) are indexed (Exploit-DB). Mandatory action: Public exploits are available—assess exposure, apply mitigations, and prioritize patching.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
| EDB-ID | Source | Kind | Published | Link |
|---|---|---|---|---|
| — | nvd_ref | exploit_tag | Exploit-DB ↗ |
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-06 | 38.39% | 32.11% | -6.28% |
| 2 | 2026-06-05 | 35.70% | 38.39% | +2.69% |
| 3 | 2026-06-03 | — | 35.70% | — |
Full EPSS history (28 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 7.1 | 3.1 | HIGH |
|
2.8 | 4.2 | [email protected] |
| 4.3 | 3.1 | MEDIUM |
|
2.8 | 1.4 | 134c704f-9b21-4f2e-91b3-4a467353bcc0 |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| proxmox | proxmox_mail_gateway | — | cpe:2.3:a:proxmox:proxmox_mail_gateway:-:*:*:*:*:*:*:* |
| proxmox | pve_http_server | < 4.1-3 | cpe:2.3:a:proxmox:pve_http_server:*:*:*:*:*:*:*:* |
| proxmox | virtual_environment | — | cpe:2.3:a:proxmox:virtual_environment:-:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| https://git.proxmox.com/?p=pve-http-server.git%3Ba=commitdiff%3Bh=936007ae0241811093155000486da171379c23c2 | |
| https://starlabs.sg/blog/2022/12-multiple-vulnerabilites-in-proxmox-ve--proxmox-mail-gateway/ | Exploit Patch Technical Description Third Party Advisory |