CVE-2026-58172 - Ocelot - IP Allow/Block List Bypass for WebSocket Upgrade Requests
CVE ID :CVE-2026-58172 Published : June 30, 2026, 3:54 p.m. | 1 hour, 17 minutes ago Description :Ocelot through 24.1.0, fixed in commit f156fd4, contains a security control bypass vulnerability that allows denied clients to circumvent IP-based access restrictions by sending WebSocket upgrade...