๐Ÿ” CVE Alert

CVE-2026-41237

UNKNOWN 0.0

Froxlor has an incomplete fix for CVE-2026-30932

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
14th

Froxlor is open source server administration software. In version 2.3.6 and earlier, the LOC record regex uses `\s+` which matches newlines (allowing embedded newlines to pass), TLSA `matchingType=0` has no upper bound on hex data length, and all validators return raw input without zone-file escaping. Version 2.3.7 contains an updated patch.

CWE CWE-74
Vendor froxlor
Product froxlor
Published Jun 4, 2026
Last Updated Jun 5, 2026
Stay Ahead of the Next One

Get instant alerts for froxlor froxlor

Be the first to know when new unknown vulnerabilities affecting froxlor froxlor are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

froxlor / froxlor
< 2.3.7

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/froxlor/froxlor/security/advisories/GHSA-j6fm-9rfm-j5hx github.com: https://github.com/froxlor/froxlor/commit/b34829262dc3 github.com: https://github.com/froxlor/froxlor/releases/tag/2.3.7