PatchSiren

vaxilu CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH vaxilu CVE published 2026-09-22

CVE-2026-79314

CVE-2026-79314 is a high-severity vulnerability in x-ui 0.3.2 that allows authenticated users to escalate privileges horizontally by modifying inbound proxy configurations of other users. The vulnerability exists due to a lack of verification in the update path, enabling unauthorized cross-user modification of data. This could lead to significant operational impact, including unauthorized data modificatio [truncated]