CVE-2026-45087 | hahwul dalfox up to 2.12.x REST API Server Mode /scan external control of setting (GHSA-v25v-m36w-jp4h)
A vulnerability was found in hahwul dalfox up to 2.12.x and classified as critical. The affected element is an unknown function of the file /scan of the component REST API Server Mode. Such manipulation leads to external control of system or configuration setting.
This vulnerability is uniquely identified as CVE-2026-45087. The attack can be launched remotely. No exploit exists.
It is suggested to upgrade the affected component.