VYPR

boringproxy

by Theopaid

CVEs (1)

  • CVE-2026-70616Aug 5, 2026
    risk 0.00cvss epss

    boringproxy through 0.10.0 contains a resource exhaustion vulnerability that allows any authenticated user to permanently exhaust server file descriptors, goroutines, and memory by sending requests to the GET /loading endpoint with attacker-supplied id query parameter values.…