CVE-2026-19538

The BLOCKED access control list items that are evaluated to deny access on the the proxy protocol port can be bypassed completely when connecting over TCP or TLS and sending the query twice on connection that is kept open.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:nlnetlabs:nsd:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-08-26 09:16

Updated : 2026-09-08 19:59


NVD link : CVE-2026-19538

Mitre link : CVE-2026-19538

CVE.ORG link : CVE-2026-19538


JSON object : View

Products Affected

nlnetlabs

  • nsd
CWE
CWE-290

Authentication Bypass by Spoofing

CWE-672

Operation on a Resource after Expiration or Release