CVE-2026-103592

CVE-2026-103592 published: simple-php-router through 5.4.1.7 contains an IP restriction bypass vulnerability in the IpRestrictAccess middleware that allows remote unauthenticated attackers to bypass IP whitelist and blacklist protections. Attackers can spoof X-Forwarded-For, CF-Conne...

View full NVD advisory → ← Back to CVE watch