VYPR

luci-app-banip

by Openwrt

CVEs (1)

  • CVE-2026-62184HigJul 13, 2026
    risk 0.00cvss 7.5epss 0.01

    luci-app-banip contains a log parsing vulnerability where the awk-based parser extracts the first IPv4 address from log lines regardless of field position, allowing attackers to inject arbitrary IPs via attacker-controlled fields like usernames. An unauthenticated remote…