EIP-2026-107439

PRE-CVE

Glype 1.4.9 - Local Address Filter Bypass

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-107439. PoCs published by Securify.

AI-analyzed exploit summary This advisory describes a local address filter bypass in Glype proxy due to insufficient validation of decimal-formatted IP addresses. The vulnerability allows attackers to access internal resources by converting restricted IPs (e.g., 127.0.0.1) to their decimal equivalents (e.g., 2130706433).

Description

Glype 1.4.9 - Local Address Filter Bypass

Exploits (1)

exploitdb WRITEUP
by Securify · textwebappsphp
https://www.exploit-db.com/exploits/34759

This advisory describes a local address filter bypass in Glype proxy due to insufficient validation of decimal-formatted IP addresses. The vulnerability allows attackers to access internal resources by converting restricted IPs (e.g., 127.0.0.1) to their decimal equivalents (e.g., 2130706433).

Classification
Writeup 100%
Attack Type
Ssrf
Complexity
Trivial
Reliability
Reliable
Target: Glype proxy 1.4.9 and older
No auth needed
Prerequisites: Access to the Glype proxy interface
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026