All 4 CVE vulnerabilities found in ip-address, with AI-generated Chinese analysis, references, and POCs.
Vendor: beaugunderson
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-69198 | ip-address: a CIDR suffix on the parsed address suppresses special-use classification and can bypass SSRF and trust-boundary checks CWE-20 | 6.9 | Medium | 2026-08-03 |
| CVE-2026-69192 | ip-address: Address4 decodes leading-zero octets as decimal while resolvers decode them as octal, allowing SSRF and trust-boundary bypass CWE-20 | 7.7 | High | 2026-08-03 |
| CVE-2026-54272 | ip-address: Misclassification of IPv4-mapped/NAT64 IPv6 addresses can bypass SSRF and trust-boundary checks CWE-20 | 6.9 | Medium | 2026-07-27 |
| CVE-2026-42338 | ip-address: XSS in Address6 HTML-emitting methods CWE-79 | 5.3 | Medium | 2026-05-12 |
All 4 known CVE vulnerabilities affecting ip-address with full Chinese analysis, references, and POCs where available.