CVE-2026-46560: Unverified Udp Datagram Processing
A UDP datagram is received and its data is processed without validating the source address or port. This pattern is associated with vulnerabilities like CVE-2026-46560 (BlastRADIUS / RADIUS Spoofing), where an unauthenticated attacker sends spoofed UDP responses to a client's ephemeral port. Always verify the origin of UDP datagrams using `getAddress()` and
greprules fetch cve-2026-46560-unverified-udp-datagram-processing --engine opengrepDescription
A UDP datagram is received and its data is processed without validating the source address or port. This pattern is associated with vulnerabilities like CVE-2026-46560 (BlastRADIUS / RADIUS Spoofing), where an unauthenticated attacker sends spoofed UDP responses to a client's ephemeral port. Always verify the origin of UDP datagrams using `getAddress()` and
Community feedback
0 rule-level signals from signed-in users.
- Useful reports
- 0
- Context false positives
- 0
- Metadata suggestions
- 0
Contextual precision
Aggregated from approved scan feedback. False-positive reports describe observed scan contexts, not a global rule verdict.
- Findings observed
- 0
- Projects
- 0
- Reporters
- 0
Precision details are collecting more signed-in reports before verdict counts or ratios are emphasized.
No approved finding verdicts yet.
No scan diagnostics reported yet.