CYBERHAWK / CVE / CVE-2026-41448

CVE-2026-41448

CRITICAL CVSS 9.4 other

The flaw

AdGuard Home, when started with the --glinet flag, contains an authentication bypass vulnerability that allows unauthenticated attackers to gain full admin access by supplying a path traversal sequence in the Admin-Token cookie, exploiting

What to do

Review advisory and patch per vendor guidance.

▸ Scan my repo for CVE-2026-41448

References

First seen 2026-06-12 · Tracked by PickBits CyberHawk · Weekly CVE digest