CVE-2026-84303 | grpc gRPC-Go up to 1.83.0 xDS RBAC HTTP Filter rbac.go normalizeHeaderMatcher access control

SecurityVulns

A vulnerability described as critical has been identified in grpc gRPC-Go up to 1.83.0. Affected by this issue is the function normalizeHeaderMatcher of the file internal/xds/httpfilter/rbac/rbac.go of the component xDS RBAC HTTP Filter. The manipulation results in improper access controls.

This vulnerability is cataloged as CVE-2026-84303. The attack may be launched remotely. There is no exploit available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More