CVE-2026-19538
Bypass of BLOCKED ACL items on proxy protocol port over TCP or TLS
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
The BLOCKED access control list items that are evaluated to deny access on the the proxy protocol port can be bypassed completely when connecting over TCP or TLS and sending the query twice on connection that is kept open.
| CWE | CWE-290 CWE-672 |
| Vendor | nlnet labs |
| Product | nsd |
| Published | Aug 26, 2026 |
| Last Updated | Aug 26, 2026 |
Stay Ahead of the Next One
Get instant alerts for nlnet labs nsd
Be the first to know when new unknown vulnerabilities affecting nlnet labs nsd are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
NLnet Labs / NSD
4.8.0 < 4.15.1
References
Credits
Qifan Zhang from Palo Alto Networks