CVE-2026-56675: Blind Replace Proxy Headers
Deleting proxy headers like 'x-forwarded-for' and injecting the raw socket IP into another header without recording the proxy presence. This destroys evidence of the proxy hop. If the application is hosted behind a local reverse proxy, downstream components may incorrectly trust external traffic as local (e.g., originating from 127.0.0.1). Evaluate or record
greprules fetch cve-2026-56675-blind-replace-proxy-headers --engine opengrepDescription
Deleting proxy headers like 'x-forwarded-for' and injecting the raw socket IP into another header without recording the proxy presence. This destroys evidence of the proxy hop. If the application is hosted behind a local reverse proxy, downstream components may incorrectly trust external traffic as local (e.g., originating from 127.0.0.1). Evaluate or record
Community feedback
0 rule-level signals from signed-in users.
- Useful reports
- 0
- Context false positives
- 0
- Metadata suggestions
- 0
Contextual precision
Aggregated from approved scan feedback. False-positive reports describe observed scan contexts, not a global rule verdict.
- Findings observed
- 0
- Projects
- 0
- Reporters
- 0
Precision details are collecting more signed-in reports before verdict counts or ratios are emphasized.
No approved finding verdicts yet.
No scan diagnostics reported yet.