Skip to main content

Threats Tagged 'cve-2026-72815'

View all threats tagged with 'cve-2026-72815'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cve-2026-72815

Threats Tagged 'cve-2026-72815'

Click on any threat for detailed analysis and mitigation recommendations

0

This security update for the hauler component addresses multiple issues through version updates 2.0.3 and 2.1.0. The 2.1.0 release introduces concurrency improvements, signature verification enhancements, audit trails, integrity checks, and support for private/insecure registries. It also includes dependency updates that resolve known vulnerabilities. The 2.0.3 update includes backported fixes and vulnerability patches related to Kubernetes libraries, Helm dependencies, and golang grpc. No specific affected versions are stated.

Join the discussion
0

This update for cloudflared fixes the following issues: Changes in cloudflared: - Update version to 2026.8.2 * Update vendor archive to fix github.com/go-chi/chi/v5 (boo#1276196, CVE-2026-72815, CVE-2026-72816, CVE-2026-72817) * Add OpenRC support * Migrate config renovate.json * Fix bugs

Join the discussion
0

This update for cloudflared fixes the following issues: Changes in cloudflared: - Update version to 2026.8.2 * Update vendor archive to fix github.com/go-chi/chi/v5 (boo#1276196, CVE-2026-72815, CVE-2026-72816, CVE-2026-72817) * Add OpenRC support * Migrate config renovate.json * Fix bugs

Join the discussion
0

This security update for v2ray-core addresses multiple vulnerabilities including CVE-2026-27017, CVE-2026-39821, CVE-2026-72815, CVE-2026-72816, and CVE-2026-72817. The update includes version upgrades to 5.53.0 and 5.51.2, which add new features and fix bugs related to gRPC transport, UDP connections, Wireguard TCP listener support, and other components. The golang.org/x/net module was also updated to version 0.55.0 to resolve additional issues. No specific affected versions were stated. The severity is assessed as high based on the vendor's classification.

Join the discussion

go-chi chi versions >= 5.2.1 and before 5.3.0 contain an IP spoofing vulnerability in the RealIP middleware, which blindly trusts the first (leftmost) value of the X-Forwarded-For HTTP header. A remote attacker can bypass IP-based access control lists and rate-limiting mechanisms, and forge log entries, by supplying a spoofed IP address in the X-Forwarded-For header. The issue is fixed in version 5.3.0.

Join the discussion

This update includes the following RPMs: prometheus3.13: * prometheus3.13-3.13.2-0.2.hum1 (aarch64, x86_64) * prometheus3.13-3.13.2-0.2.hum1.src (src) Security Fix(es): prometheus3.13: * CVE-2026-69153

Join the discussion

A security update for Red Hat Hardened Images RPMs addresses vulnerabilities including CVE-2026-72815, CVE-2026-72816, and CVE-2026-72817. Notably, CVE-2026-72816 involves an IP spoofing flaw in the go-chi/chi RealIP middleware, allowing remote attackers to supply arbitrary IP addresses in client-controlled headers, potentially bypassing IP-based access controls and evading rate limiting. The update includes new versions of spire1.15 packages for aarch64 and x86_64 architectures. No explicit patch details are provided for CVE-2026-72815 specifically. The vendor advisory indicates the update is available and provides guidance on mitigation for the IP spoofing issue.

Join the discussion

Showing 1 to 7 of 7 results

Filters:Tag: cve-2026-72815
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses