CVE-2026-38969 ruby webrick through v1.9.2 WEBrick reparses trailer Content-Length into canonical request state, enabling request smuggling. Information published. CVE-2026-38969 Ruby US Microsoft Security · 9. 7. 10:02