CVE-2026-82815 | MegaEase EaseProbe up to 2.3.0 Middleware web/server.go realIP X-Forwarded-For/X-Real-IP/True-Client-IP access control

SecurityVulns

A vulnerability identified as critical has been detected in MegaEase EaseProbe up to 2.3.0. Affected is the function realIP of the file web/server.go of the component Middleware. This manipulation of the argument X-Forwarded-For/X-Real-IP/True-Client-IP causes improper access controls.

This vulnerability is handled as CVE-2026-82815. The attack can be initiated remotely. Additionally, an exploit exists.

The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More