HIGH
allinurl
CVE published 2026-07-30
CVE-2026-54715
The CVE-2026-54715 vulnerability affects GoAccess version 1.10.2, a real-time web log analyzer. The parse_browser function improperly handles crafted User-Agent strings, allowing an attacker to write one to four attacker-influenced bytes beyond the heap allocation. This can lead to heap corruption or crashes. The issue is addressed in GoAccess version 1.11. GoAccess users, particularly those using version [truncated]