CVE-2026-107361 | CISA Malcolm up to 26.07.1 Arkime Live Capture Service X-Forwarded-User improper authentication
A vulnerability was found in CISA Malcolm up to 26.07.1. It has been rated as very critical. The impacted element is an unknown function of the component Arkime Live Capture Service. The manipulation of the argument X-Forwarded-User leads to improper authentication.
This vulnerability is traded as CVE-2026-107361. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is advised.VulDB Recent EntriesRead More