A critical vulnerability tracked as CVE-2026-70615 affects boringproxy through version 0.10.0, allowing an authenticated low-privileged user with tunnel-creation permission to inject arbitrary lines into the server account’s authorized_keys file. The flaw stems from newline injection in the tunnel creation endpoint, where a percent-encoded newline supplied in the domain parameter can be written into SSH key configuration, effectively letting an attacker add an unrestricted public key and gain persistent remote shell access.
Once shell access is established, an attacker can read cleartext secrets from the boringproxy database, including user tokens, tunnel private keys, and TLS certificates. The issue is described as remotely exploitable and carries a CVSS 3.1 score of 9.9. Recommended mitigation includes updating boringproxy, restricting tunnel creation privileges to trusted users, and reviewing and cleaning any unauthorized entries from authorized_keys files.

See affected versions and whether adversaries are exploiting it.
1 event from the most recent confirmed update back to the earliest known activity.
A critical newline injection vulnerability affecting boringproxy through version 0.10.0 was disclosed. The flaw lets an authenticated low-privileged user with tunnel-creation permission inject arbitrary lines into the server account's SSH authorized_keys file via a percent-encoded newline in the domain parameter.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
3 references tracked. Mallory keeps watching after this page renders.
cvefeed.io
Open sourcevulncheck.com
Open sourcegithub.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.