VYPR

luci-app-banip

by Openwrt

CVEs (1)

  • CVE-2026-62184Jul 13, 2026
    risk 0.00cvss epss 0.00

    luci-app-banip contains a log parsing vulnerability where the awk-based parser extracts the first IPv4 address from log lines regardless of field position, allowing attackers to inject arbitrary IPs via attacker-controlled fields like usernames. An unauthenticated remote…