CVE WATCH / VULNERABILITY DETAIL

CVE-2026-107361

MEDIUMCVSS 4.2NVD feed

Published 8 October 2026 · tracked since 9 October 2026

Description

The Arkime live capture service (arkime-live) in Malcolm runs with network_mode: host, exposing port 8005 on all network interfaces (viewHost=0.0.0.0). Arkime trusts the X-Forwarded-User header from any IP address (userAuthIps=::,0.0.0.0/0) and auto-creates users with full access. The passwordSecret

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-107361 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-107361

MEDIUMCVSS 4.2NVD feed

Published 8 October 2026 · tracked since 9 October 2026

Description

The Arkime live capture service (arkime-live) in Malcolm runs with network_mode: host, exposing port 8005 on all network interfaces (viewHost=0.0.0.0). Arkime trusts the X-Forwarded-User header from any IP address (userAuthIps=::,0.0.0.0/0) and auto-creates users with full access. The passwordSecret

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]