CWE-348

CWE-348 · 10 records · 4 with a public proof-of-concept

Records the NVD classes under CWE-348, highest CVSS first.

  1. CRITICAL 9.1CVE-2026-92395public PoC

    @fastify/proxy-addr is a Fastify plugin that determines a request's client address behind trusted reverse proxies, and it backs Fastify request.ip and request.ips. In versions 3.0.0 through 5.1.0, a trust subnet written in IPv4-mapped IPv6 notation with an IPv…

    AI risk analysis on Exploit-DB.ai →

  2. MEDIUM 6.5CVE-2026-101277

    A security flaw has been discovered in Trusted Domain Project OpenDKIM up to 2.11.0. The impacted element is the function dkim_process_set of the file dkim.c of the component Tag Tokenizer. Performing a manipulation results in use of less trusted source. The a…

    AI risk analysis on Exploit-DB.ai →

  3. MEDIUM 6.5CVE-2026-102275public PoC

    PyJWT is a Python implementation of JSON Web Token standards. From 2.1.0 until 2.15.0, PyJWT OKPAlgorithm.from_jwk in jwt/algorithms.py is affected because private-JWK import path does not compare the public key derived from d with x. This occurs when an OKP …

    AI risk analysis on Exploit-DB.ai →

  4. MEDIUM 6.5CVE-2026-100653public PoC

    vLLM is an inference and serving engine for large language models. In versions from 0.22.1 through 0.28.0, the operator-supplied model revision pin (--revision / --code-revision) is not propagated to several Hugging Face artifact loads for the FunAudioChat and…

    AI risk analysis on Exploit-DB.ai →

  5. MEDIUM 5.8CVE-2026-62987public PoC

    Fabio is an HTTP(S) and TCP router for deploying applications managed by consul. From 1.6.6 until 1.7.2, the CVE-2025-48865 fix in proxy/http_headers.go uses protectHeaders for a hardcoded set of forwarded headers but omits the operator-configured ClientIPHead…

    AI risk analysis on Exploit-DB.ai →

  6. MEDIUM 5.3CVE-2026-80514

    The wpForo Forum WordPress plugin from 3.0.0 before 3.1.6 does not verify the source of client-supplied IP address headers before using them to key its per-visitor rate limit on paid AI requests, allowing unauthenticated attackers to bypass the limit by spoofi…

    AI risk analysis on Exploit-DB.ai →

  7. MEDIUM 5.3CVE-2026-87070

    The Forminator Forms WordPress plugin before 1.57.2.1 does not verify that a request came from a trusted proxy before preferring client-supplied forwarding headers over the connecting address, and it uses that value both to enforce its per-visitor voting limit…

    AI risk analysis on Exploit-DB.ai →

  8. MEDIUM 4.3CVE-2026-92530

    GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.1 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user to spoof merge request authorship and attribute con…

    gitlab

    AI risk analysis on Exploit-DB.ai →

  9. MEDIUM 4.3CVE-2026-84718

    A flaw was found in the Ansible Automation Platform automation-controller. In the shipped production configuration, the Controller trusts the client-supplied X-Forwarded-For header as the request's client IP without verifying that it originated from a trusted …

    AI risk analysis on Exploit-DB.ai →

  10. UNSCOREDCVE-2026-97404

    In OpenStack Zaqar before 22.0.2, WSGI transport mishandles the URL-Signature header. By sending a request with an empty URL-Signature header, an unauthenticated remote attacker who knows a target project's UUID may bypass both Keystone authentication and pre-…

    AI risk analysis on Exploit-DB.ai →