HIGH
vaxilu
CVE published 2026-09-22
CVE-2026-79314
CVE-2026-79314 is a high-severity vulnerability in x-ui 0.3.2 that allows authenticated users to escalate privileges horizontally by modifying inbound proxy configurations of other users. The vulnerability exists due to a lack of verification in the update path, enabling unauthorized cross-user modification of data. This could lead to significant operational impact, including unauthorized data modificatio [truncated]