Threats Tagged 'cve-2026-70367'
View all threats tagged with 'cve-2026-70367'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-70367'
Click on any threat for detailed analysis and mitigation recommendations
0 A Server-Side Request Forgery (SSRF) bypass vulnerability exists in stunnel versions 5.79 and earlier when configured with the non-default 'protocol = socks' setting. This flaw allows an attacker who can reach the SOCKS proxy to bypass localhost restrictions by using IPv4-mapped IPv6 or unspecified addresses, potentially accessing services bound to the local interface that should not be network-accessible. Exploitation depends on the presence and security of such local services. The vulnerability has a medium severity rating. Join the discussion | GCVE Database | 08/11/2026, 00:00:00 UTC Added: 08/04/2026, 17:59:46 UTC |
0 A Server-Side Request Forgery (SSRF) bypass vulnerability exists in “stunnel” 5.79 and lower when configured in SOCKS proxy mode. This flaw allows a client to bypass intended localhost restrictions by using IPv4-mapped IPv6 addresses (e.g., “::ffff:127.0.0.1”) or unspecified addresses ("0.0.0.0", "::"), enabling access to loopback-only services on the "stunnel" host that should not be network-reachable. Join the discussion | CVE Database V5 | 08/04/2026, 13:52:20 UTC Added: 08/04/2026, 14:12:40 UTC |
Showing 1 to 2 of 2 results