CVEs classified under CWE-348, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (50)
CVE-2026-48772 — CVSS 10.0 (critical): ProxySQL is a proxy for MySQL and its forks, as well as PostgreSQL. In versions 2.0.0 through 3.0.8, the ProxySQL MySQL frontend accepts…
CVE-2026-97404: In OpenStack Zaqar before 22.0.2, WSGI transport mishandles the URL-Signature header. By sending a request with an empty URL-Signature…
CVE-2026-16272 — CVSS 9.1 (critical): Use of less trusted source vulnerability in PayTR Payment and Electronic Money Institution Inc. PayTR Virtual Pos iFrame API WHMCS Module…
CVE-2026-58122 — CVSS 9.1 (critical): Hermes WebUI before 0.51.307 contains an authentication bypass vulnerability that allows unauthenticated remote attackers to circumvent…
CVE-2026-12249 — CVSS 9.0 (critical): An issue was discovered in Canonical ADSys upstream versions through v0.16.2. During Active Directory Certificate Services (AD CS)…
CVE-2025-69240 — CVSS 8.8 (high): Raytha CMS allows an attacker to spoof `X-Forwarded-Host` or `Host` headers to attacker controlled domain. The attacker (who knows the…
CVE-2025-55292 — CVSS 8.2 (high): Meshtastic is an open source mesh networking solution. In the current Meshtastic architecture, a Node is identified by their NodeID…
CVE-2026-64619 — CVSS 7.5 (high): FileCodeBox before 2.4 contains a rate-limit bypass vulnerability in the IPRateLimit class that allows unauthenticated attackers to…
CVE-2026-63770 — CVSS 7.5 (high): Glance through 0.8.5 contains an IP address spoofing vulnerability in the authentication handler that allows unauthenticated attackers to…
CVE-2026-43634 — CVSS 7.5 (high): HestiaCP versions 1.2.0 through 1.9.4 contain an IP spoofing vulnerability that allows unauthenticated remote attackers to bypass…
CVE-2026-35391 — CVSS 7.5 (high): Bulwark Webmail is a self-hosted webmail client for Stalwart Mail Server. Prior to 1.4.11, the getClientIP() function in…
CVE-2025-27913 — CVSS 7.5 (high): Passbolt API before 5, if the server is misconfigured (with an incorrect installation process and disregarding of Health Check results)…
CVE-2024-23105 — CVSS 7.5 (high): A Use Of Less Trusted Source [CWE-348] vulnerability in Fortinet FortiPortal version 7.0.0 through 7.0.6 and version 7.2.0 through 7.2.1…
CVE-2025-47424 — CVSS 7.1 (high): Retool (self-hosted) before 3.196.0 allows Host header injection. When the BASE_DOMAIN environment variable is not set, the HTTP host…
CVE-2026-103592 — CVSS 6.5 (medium): simple-php-router through 5.4.1.7 contains an IP restriction bypass vulnerability in the IpRestrictAccess middleware that allows remote…
CVE-2026-101277 — CVSS 6.5 (medium): A security flaw has been discovered in Trusted Domain Project OpenDKIM up to 2.11.0. The impacted element is the function dkim_process_set…
CVE-2026-100653 — CVSS 6.5 (medium): vLLM is an inference and serving engine for large language models. In versions from 0.22.1 through 0.28.0, the operator-supplied model…
CVE-2020-37248 — CVSS 6.5 (medium): OfflineIMAP before 8.0.3 trusts the server with their STARTTLS capability prior to authentication, which allows STRIPTLS/man-in-the-middle…
CVE-2025-1245 — CVSS 6.5 (medium): Bypass Connection Restriction vulnerability in Hitachi Infrastructure Analytics Advisor (Data Center Analytics component), Hitachi Ops…
CVE-2022-4532 — CVSS 6.5 (medium): The LOGIN AND REGISTRATION ATTEMPTS LIMIT plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 2.1…
CVE-2022-4537 — CVSS 6.5 (medium): The Hide My WP Ghost – Security Plugin plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including…
CVE-2026-40226 — CVSS 6.4 (medium): In nspawn in systemd 233 through 259 before 260, an escape-to-host action can occur via a crafted optional config file.
CVE-2025-43918 — CVSS 6.4 (medium): SSL.com before 2025-04-19, when domain validation method 3.2.2.4.14 is used, processes certificate requests such that a trusted TLS…
CVE-2026-61589 — CVSS 6.3 (medium): djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, the…
CVE-2026-16732 — CVSS 6.1 (medium): fastify is a fast and low overhead web framework for Node.js. Impact: the fix for CVE-2026-3635 added a guard on the forwarded-header reads…
CVE-2026-3635 — CVSS 6.1 (medium): Summary When trustProxy is configured with a restrictive trust function (e.g., a specific IP like trustProxy: '10.0.0.1', a subnet, a hop…
CVE-2026-59999 — CVSS 5.9 (medium): In sshd in OpenSSH before 10.4, DisableForwarding=yes was supposed to take precedence over PermitTunnel=yes, but did not.
CVE-2026-24910 — CVSS 5.9 (medium): In Bun before 1.3.5, the default trusted dependencies list (aka trust allow list) can be spoofed by a non-npm package in the case of a…
CVE-2026-44046 — CVSS 5.8 (medium): Use of Less Trusted Source vulnerability in Apache APISIX. Attacker can take advantage of wolf-rbac plugin under default configuration to…
CVE-2026-80514 — CVSS 5.3 (medium): The wpForo Forum WordPress plugin from 3.0.0 before 3.1.6 does not verify the source of client-supplied IP address headers before using…
CVE-2026-87070 — CVSS 5.3 (medium): The Forminator Forms WordPress plugin before 1.57.2.1 does not verify that a request came from a trusted proxy before preferring…
CVE-2026-57942 — CVSS 5.3 (medium): LibreTranslate through 1.9.7, fixed in commit 397fd22, contains an IP spoofing vulnerability in the get_remote_address() function that…
CVE-2026-33690 — CVSS 5.3 (medium): WWBN AVideo is an open source video platform. In versions up to and including 26.0, the `getRealIpAddr()` function in…
CVE-2026-22201 — CVSS 5.3 (medium): wpDiscuz before 7.6.47 contains an IP spoofing vulnerability in the getIP() function that allows attackers to bypass IP-based rate limiting…
CVE-2025-13694 — CVSS 5.3 (medium): The AA Block Country plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 1.0.1. This is due to the…
CVE-2025-53522 — CVSS 5.3 (medium): Movable Type contains an issue with use of less trusted source. If exploited, tampered email to reset a password may be sent by a remote…
CVE-2025-47149 — CVSS 5.3 (medium): The optional feature 'Anti-Virus & Sandbox' of i-FILTER contains an issue with improper pattern file validation. If exploited, the product…
CVE-2022-4534 — CVSS 5.3 (medium): The Limit Login Attempts (Spam Protection) plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 5.3…
CVE-2022-4529 — CVSS 5.3 (medium): The Security, Antivirus, Firewall – S.A.F plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including…
CVE-2022-4536 — CVSS 5.3 (medium): The IP Vault – WP Firewall plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 1.1. This is due…
CVE-2024-6171 — CVSS 5.3 (medium): The Unlimited Elements For Elementor (Free Widgets, Addons, Templates) plugin for WordPress is vulnerable to IP Address Spoofing in all…
CVE-2024-0789 — CVSS 5.3 (medium): The WP Maintenance plugin for WordPress is vulnerable to IP Address Spoofing in all versions up to, and including, 6.1.9.2 due to…
CVE-2026-26927: Szafir SDK Web is a browser plug-in that can run SzafirHost application which download the necessary files when launched. In Szafir SDK Web…
CVE-2026-63220 — CVSS 4.8 (medium): CodeIgniter is a PHP full-stack web framework. In versions prior to 4.7.4, IncomingRequest::isSecure() trusted the X-Forwarded-Proto and…
CVE-2026-59897 — CVSS 4.8 (medium): Hono is a Web application framework that provides support for any JavaScript runtime. From 4.3.3 before 4.12.27, the AWS API Gateway v1…
CVE-2026-54289 — CVSS 4.8 (medium): Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.25, on AWS Lambda@Edge, CloudFront…
CVE-2026-102630 — CVSS 4.7 (medium): UnoPim versions before 2.0.1 and 2.1.1 trust all connecting clients as proxies and honor the X-Forwarded-Host header without validation…
CVE-2026-92530 — CVSS 4.3 (medium): GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.1 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1…
CVE-2026-84718 — CVSS 4.3 (medium): A flaw was found in the Ansible Automation Platform automation-controller. In the shipped production configuration, the Controller trusts…