CVE-2026-44183
Last modified
CVE-2026-44183 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. Cleanuparr is a tool for automating the cleanup of unwanted or blocked files in Sonarr, Radarr, and supported download clients like qBittorrent. Prior to 2.9.10, TrustedNetworkAuthenticationHandler.ResolveClientIp parses the leftmost entry of the X-Forwarded-For header as the client IP. EPSS estimates a 0.22% chance of exploitation in the next 30 days.
Description
Cleanuparr is a tool for automating the cleanup of unwanted or blocked files in Sonarr, Radarr, and supported download clients like qBittorrent. Prior to 2.9.10, TrustedNetworkAuthenticationHandler.ResolveClientIp parses the leftmost entry of the X-Forwarded-For header as the client IP. That entry is attacker-controlled — X-Forwarded-For is append-only, so the leftmost value is whatever the original HTTP client claimed. By sending a spoofed local IP in the header, an unauthenticated remote attacker passes the trusted-network check and is logged in as the Cleanuparr administrator. This vulnerability is fixed in 2.9.10.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-44183?
How severe is CVE-2026-44183?
How do I fix CVE-2026-44183?
How Strix Helps
- Same Subject, Wrong User: A Cross-Issuer Account Takeover in n8nStrix found an identity-binding bug in n8n's token-exchange flow enabling account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-44176Kirby is an open-source content management system. Versions …6
- CVE-2026-44177Kirby is an open-source content management system. In versio…8.8
- CVE-2026-44178xrdp is an open source RDP server. Versions 0.10.6 and prior…8.8
- CVE-2026-44180Jupyter Enterprise Gateway launches remote Jupyter Notebook …9.8
- CVE-2026-44181Jupyter Enterprise Gateway launches remote Jupyter Notebook …10
- CVE-2026-44182Jupyter Enterprise Gateway launches remote Jupyter Notebook …10
- CVE-2026-44184Cleanuparr is a tool for automating the cleanup of unwanted …8
- CVE-2026-44185Buffer Over-read vulnerability in Apache HTTP Server via out…7.3
- CVE-2026-44186Loop with Unreachable Exit Condition ('Infinite Loop') vulne…7.3
- CVE-2026-44187A flaw was found in the Ansible Lightspeed extension for Vis…3.3
- CVE-2026-44188A flaw was found in Ansible Lightspeed. This vulnerability, …5.3
- CVE-2026-44189A flaw was found in the Visual Studio Code Ansible Lightspee…7.8
Are you affected by CVE-2026-44183?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
