CVE-2026-85181 | Dianping CAT up to 3.1.0 Session Management String.hashCode x-forwarded-for integrity check
A vulnerability marked as critical has been reported in Dianping CAT up to 3.1.0. The affected element is the function String.hashCode of the component Session Management. This manipulation of the argument x-forwarded-for causes improper validation of integrity check value.
This vulnerability is tracked as CVE-2026-85181. The attack is possible to be carried out remotely. No exploit exists.VulDB Recent EntriesRead More