CVE-2026-41237
Froxlor has an incomplete fix for CVE-2026-30932
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
14th
Froxlor is open source server administration software. In version 2.3.6 and earlier, the LOC record regex uses `\s+` which matches newlines (allowing embedded newlines to pass), TLSA `matchingType=0` has no upper bound on hex data length, and all validators return raw input without zone-file escaping. Version 2.3.7 contains an updated patch.
| CWE | CWE-74 |
| Vendor | froxlor |
| Product | froxlor |
| Published | Jun 4, 2026 |
| Last Updated | Jun 5, 2026 |
Stay Ahead of the Next One
Get instant alerts for froxlor froxlor
Be the first to know when new unknown vulnerabilities affecting froxlor froxlor are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
froxlor / froxlor
< 2.3.7