SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-19538

HIGH · CVSS 7.5 EPSS 0.30%

Source: NVD + CISA KEV + EPSS · Published 2026-08-26 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

The vulnerability allows attackers to bypass access control list restrictions on the proxy protocol port by sending a query twice over an open TCP or TLS connection. This could lead to unauthorized access to sensitive resources, making it critical for organizations using affected proxy services to prioritize remediation efforts. System administrators and security teams should assess their configurations to mitigate potential exploitation.

CVE
CVE-2026-19538
Severity
HIGH
CVSS
7.5
EPSS
0.30%

Original NVD Description

The BLOCKED access control list items that are evaluated to deny access on the the proxy protocol port can be bypassed completely when connecting over TCP or TLS and sending the query twice on connection that is kept open.

Related CVEs

Other vulnerabilities affecting the same vendor(s)