Potential leak of left-over heap data if custom error page templates containing special non-standard variables are used. Tinyproxy commit 84f203f and earlier use uninitialized buffers in process_request() function.
https://security.gentoo.org/glsa/202305-27
https://github.com/tinyproxy/tinyproxy/issues/457#issuecomment-1264176815