THREATOPS
THREAT OPSThreat News › CVE-2026-71216: Apache SkyWalking: PagerDuty alarm hook transmits the integration routing key over cleartext HTTP

CVE-2026-71216: Apache SkyWalking: PagerDuty alarm hook transmits the integration routing key over cleartext HTTP

medoss_secPublished 2026-09-04

<p>Posted by Kai Wan on Sep 03</p>Severity: low <br /> <br /> Affected versions:<br /> <br /> - Apache SkyWalking 9.6.0 through 11.0.0<br /> <br /> Description:<br /> <br /> PagerDuty alarm hook transmits the integration routing key over cleartext HTTP.<br /> <br /> PagerDuty serves this endpoint over HTTPS and will<br /> normally answer plain HTTP with a redirect. That does not remove the exposur

Indicators of compromise

Original source: https://seclists.org/oss-sec/2026/q3/647