CWE-441 · 143 records
Unintended Proxy or Intermediary ('Confused Deputy')
CVEs in this class
143 records
| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
73This week | CVE-2026-83548Weaponized | A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access path.sonicwall · sma8200v · CWE-441 | Critical10.0 | KEV | 8.8% | Sep 1, 2026 |
46Plan | CVE-2025-47269No exploit | code-server session cookie can be extracted by having user visit specially crafted proxy URLcoder · code-server · CWE-441 | High8.3 | — | 42.7% | May 9, 2025 |
40Plan | CVE-2021-20042No exploit | An unauthenticated remote attacker can use SMA 100 as an unintended proxy or intermediary undetectable proxy to bypass firewall rules.sonicwall · sma 200 firmware · CWE-441 | Critical9.8 | — | 2.6% | Dec 8, 2021 |
40Plan | CVE-2026-42933No exploit | Unintended Proxy or Intermediary in Panduit IntraVUE by Pronetiqspronetiqs · panduit intravue · CWE-441 | Critical10.0 | — | 0.5% | Jul 23, 2026 |
40Plan | CVE-2026-16158No exploit | @fastify/reply-from vulnerable to cross-upstream request routing via URL cache key collisionfastify · fastify\/reply-from · CWE-441 | Critical10.0 | — | 0.4% | Jul 18, 2026 |
39Monitor | CVE-2026-72526No exploit | Multicloud-integrations: multicloud-integrations: pull-model propagation allows hub tenant to target arbitrary spoke cluster via unvalidated ocm-managed-clusterred hat · red hat advanced cluster management for kubernetes 2.11 · CWE-441 | Critical9.9 | — | 0.7% | Aug 11, 2026 |
39Monitor | CVE-2026-67567No exploit | Multicloud-operators-subscription: multicloud-operators-subscription: helmrelease chart applied with controller sa without gvk or namespace restrictionred hat · red hat advanced cluster management for kubernetes 2.11 · CWE-441 | Critical9.9 | — | 0.6% | Aug 20, 2026 |
39Monitor | CVE-2026-69399No exploit | Azure Arc Elevation of Privilege Vulnerabilitymicrosoft · azure arc · CWE-441 | Critical9.8 | — | 0.5% | Sep 17, 2026 |
38Monitor | CVE-2026-70398No exploit | Multicloud-integrations: multicloud-integrations: gitopscluster.spec.argoserver.argonamespace writes spoke bearer tokens to attacker-chosen namespacered hat · red hat advanced cluster management for kubernetes 2.11 · CWE-441 | Critical9.6 | — | 0.5% | Aug 11, 2026 |
37Monitor | CVE-2026-100706No exploit | kyverno before 1.19.1 Privilege Escalation via Policy apiCall urlPathkyverno · kyverno · CWE-441 | Critical9.4 | — | 0.6% | 4 days ago |
37Monitor | CVE-2026-24471No exploit | Improper Validation in Conduit-derived homeservers resulting in Unintended Proxy or Intermediary ('Confused Deputy')continuwuity · continuwuity · CWE-441 | Critical9.3 | — | 0.3% | Feb 2, 2026 |
37Monitor | CVE-2025-64125No exploit | Nuvation Energy nCloud Client-to-Client Communicationnuvation energy · ncloud vpn service · CWE-441 | Critical9.4 | — | 0.3% | Jan 3, 2026 |
36Monitor | CVE-2015-2947No exploit | KanColleViewer versions 3.8.1 and earlier operates as an open proxy which allows remote attackers to trigger outbound network traffic.grabacr.net · kancolleviewer · CWE-441 | Critical9.1 | — | 1.5% | Apr 13, 2017 |
36Monitor | CVE-2026-44945No exploit | Cross-Cluster Impersonation Confused-Deputy Privilege Escalationsuse · rancher · CWE-441 | Critical9.1 | — | 0.6% | Aug 5, 2026 |
36Monitor | CVE-2026-33768No exploit | Astro: Unauthenticated Path Override via `x-astro-path` / `x_astro_path`astro · \@astrojs\/vercel · CWE-441 | Critical9.1 | — | 0.5% | Mar 24, 2026 |
35Monitor | CVE-2019-3924Proof of concept | MikroTik RouterOS before 6.43.12 (stable) and 6.42.12 (long-term) is vulnerable to an intermediary vulnerability.mikrotik · routeros · CWE-441 | High7.5 | — | 15.7% | Feb 20, 2019 |
35Monitor | CVE-2024-9870No exploit | Unintended Proxy or Intermediary ('Confused Deputy') in GitLabgitlab · gitlab · CWE-441 | High8.8 | — | 0.4% | Feb 12, 2025 |
35Monitor | CVE-2026-36608No exploit | Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 allows UPnP AddPortMapping to forward external ports to the router's own admCWE-441 | High8.8 | — | 0.3% | Jun 3, 2026 |
34Monitor | CVE-2021-32783No exploit | Authorization bypass in Contourprojectcontour · contour · CWE-441 | High8.5 | — | 1.2% | Jul 23, 2021 |
34Monitor | CVE-2026-44494No exploit | Axios: Full Man-in-the-Middle via Prototype Pollution Gadget in `config.proxy`axios · axios · CWE-441 | High8.7 | — | 0.9% | Jun 11, 2026 |
34Monitor | CVE-2026-17107No exploit | Cluster-proxy: impersonation-header injection grants cluster-admin on every managed clusterred hat · multicluster engine for kubernetes 2.1 · CWE-441 | High8.5 | — | 0.6% | Jul 24, 2026 |
34Monitor | CVE-2026-100625No exploit | Capgo Build Upload Proxy Authorization Bypass via TUS Resourcecap-go · capgo.app · CWE-441 | High8.7 | — | 0.3% | 4 days ago |
34Monitor | CVE-2025-11393No exploit | Insights-runtimes-tech-preview/runtimes-inventory-rhel8-operator: improper proxy configuration allows unauthorized administrative commandsred hat · red hat lightspeed (formerly insights) for runtimes 1.0 · CWE-441 | High8.7 | — | 0.2% | Dec 15, 2025 |
33Monitor | CVE-2019-1841No exploit | Cisco DNA Center Unintended Proxy Via SWIM Import Interface Vulnerabilitycisco · catalyst center · CWE-441 | High8.1 | — | 2.6% | Apr 17, 2019 |
33Monitor | CVE-2026-87582No exploit | Confused deputy in DataTransfer in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process tgoogle · chrome · CWE-441 | High8.3 | — | 0.4% | Sep 8, 2026 |
- CVE-2026-8354873This week
A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access path.
CriticalCVSS 10.0KEVWeaponizedEPSS 9%sonicwall · sma8200vSep 1, 2026
- CVE-2025-4726946Plan
code-server session cookie can be extracted by having user visit specially crafted proxy URL
HighCVSS 8.3No exploitEPSS 43%coder · code-serverMay 9, 2025
- CVE-2021-2004240Plan
An unauthenticated remote attacker can use SMA 100 as an unintended proxy or intermediary undetectable proxy to bypass firewall rules.
CriticalCVSS 9.8No exploitEPSS 3%sonicwall · sma 200 firmwareDec 8, 2021
- CVE-2026-4293340Plan
Unintended Proxy or Intermediary in Panduit IntraVUE by Pronetiqs
CriticalCVSS 10.0No exploitEPSS 1%pronetiqs · panduit intravueJul 23, 2026
- CVE-2026-1615840Plan
@fastify/reply-from vulnerable to cross-upstream request routing via URL cache key collision
CriticalCVSS 10.0No exploitEPSS 0%fastify · fastify\/reply-fromJul 18, 2026
- CVE-2026-7252639Monitor
Multicloud-integrations: multicloud-integrations: pull-model propagation allows hub tenant to target arbitrary spoke cluster via unvalidated ocm-managed-cluster
CriticalCVSS 9.9No exploitEPSS 1%red hat · red hat advanced cluster management for kubernetes 2.11Aug 11, 2026
- CVE-2026-6756739Monitor
Multicloud-operators-subscription: multicloud-operators-subscription: helmrelease chart applied with controller sa without gvk or namespace restriction
CriticalCVSS 9.9No exploitEPSS 1%red hat · red hat advanced cluster management for kubernetes 2.11Aug 20, 2026
- CVE-2026-6939939Monitor
Azure Arc Elevation of Privilege Vulnerability
CriticalCVSS 9.8No exploitEPSS 0%microsoft · azure arcSep 17, 2026
- CVE-2026-7039838Monitor
Multicloud-integrations: multicloud-integrations: gitopscluster.spec.argoserver.argonamespace writes spoke bearer tokens to attacker-chosen namespace
CriticalCVSS 9.6No exploitEPSS 1%red hat · red hat advanced cluster management for kubernetes 2.11Aug 11, 2026
- CVE-2026-10070637Monitor
kyverno before 1.19.1 Privilege Escalation via Policy apiCall urlPath
CriticalCVSS 9.4No exploitEPSS 1%kyverno · kyverno4 days ago
- CVE-2026-2447137Monitor
Improper Validation in Conduit-derived homeservers resulting in Unintended Proxy or Intermediary ('Confused Deputy')
CriticalCVSS 9.3No exploitEPSS 0%continuwuity · continuwuityFeb 2, 2026
- CVE-2025-6412537Monitor
Nuvation Energy nCloud Client-to-Client Communication
CriticalCVSS 9.4No exploitEPSS 0%nuvation energy · ncloud vpn serviceJan 3, 2026
- CVE-2015-294736Monitor
KanColleViewer versions 3.8.1 and earlier operates as an open proxy which allows remote attackers to trigger outbound network traffic.
CriticalCVSS 9.1No exploitEPSS 2%grabacr.net · kancolleviewerApr 13, 2017
- CVE-2026-4494536Monitor
Cross-Cluster Impersonation Confused-Deputy Privilege Escalation
CriticalCVSS 9.1No exploitEPSS 1%suse · rancherAug 5, 2026
- CVE-2026-3376836Monitor
Astro: Unauthenticated Path Override via `x-astro-path` / `x_astro_path`
CriticalCVSS 9.1No exploitEPSS 0%astro · \@astrojs\/vercelMar 24, 2026
- CVE-2019-392435Monitor
MikroTik RouterOS before 6.43.12 (stable) and 6.42.12 (long-term) is vulnerable to an intermediary vulnerability.
HighCVSS 7.5Proof of conceptEPSS 16%mikrotik · routerosFeb 20, 2019
- CVE-2024-987035Monitor
Unintended Proxy or Intermediary ('Confused Deputy') in GitLab
HighCVSS 8.8No exploitEPSS 0%gitlab · gitlabFeb 12, 2025
- CVE-2026-3660835Monitor
Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 allows UPnP AddPortMapping to forward external ports to the router's own adm
HighCVSS 8.8No exploitEPSS 0%Jun 3, 2026
- CVE-2021-3278334Monitor
Authorization bypass in Contour
HighCVSS 8.5No exploitEPSS 1%projectcontour · contourJul 23, 2021
- CVE-2026-4449434Monitor
Axios: Full Man-in-the-Middle via Prototype Pollution Gadget in `config.proxy`
HighCVSS 8.7No exploitEPSS 1%axios · axiosJun 11, 2026
- CVE-2026-1710734Monitor
Cluster-proxy: impersonation-header injection grants cluster-admin on every managed cluster
HighCVSS 8.5No exploitEPSS 1%red hat · multicluster engine for kubernetes 2.1Jul 24, 2026
- CVE-2026-10062534Monitor
Capgo Build Upload Proxy Authorization Bypass via TUS Resource
HighCVSS 8.7No exploitEPSS 0%cap-go · capgo.app4 days ago
- CVE-2025-1139334Monitor
Insights-runtimes-tech-preview/runtimes-inventory-rhel8-operator: improper proxy configuration allows unauthorized administrative commands
HighCVSS 8.7No exploitEPSS 0%red hat · red hat lightspeed (formerly insights) for runtimes 1.0Dec 15, 2025
- CVE-2019-184133Monitor
Cisco DNA Center Unintended Proxy Via SWIM Import Interface Vulnerability
HighCVSS 8.1No exploitEPSS 3%cisco · catalyst centerApr 17, 2019
- CVE-2026-8758233Monitor
Confused deputy in DataTransfer in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process t
HighCVSS 8.3No exploitEPSS 0%google · chromeSep 8, 2026