Microsoft Security Response Center Follow CVE-2026-38969 ruby webrick through v1.9.2 WEBrick reparses trailer Content-Length into canonical request state, enabling request smuggling. https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-38969 msrc.microsoft.com