Advisory Database
  • Advisories
  • Dependency Scanning
  1. golang
  2. ›
  3. github.com/bettercap/bettercap/v2
  4. ›
  5. CVE-2026-8275

CVE-2026-8275: bettercap Has an Integer Coercion Error in the ippReadChunkedBody Function

May 11, 2026 (updated May 14, 2026)

A vulnerability was detected in bettercap up to 2.41.5. Affected by this vulnerability is the function ippReadChunkedBody of the file modules/zerogod/zerogod_ipp_primitives.go of the component zerogod IPP Service. Performing a manipulation results in integer coercion error. The attack can be initiated remotely. The attack is considered to have high complexity. The exploitation appears to be difficult. The exploit is now public and may be used. The patch is named 3731d5576cffae9eefe3721cd46a40933304129f. To fix this issue, it is recommended to deploy a patch.

References

  • github.com/advisories/GHSA-322p-rrj6-j44g
  • github.com/bettercap/bettercap
  • github.com/bettercap/bettercap/commit/3731d5576cffae9eefe3721cd46a40933304129f
  • github.com/bettercap/bettercap/issues/1263
  • github.com/bettercap/bettercap/pull/1264
  • github.com/bettercap/bettercap/releases/tag/v2.41.7
  • github.com/user-attachments/files/26852847/poc.py
  • nvd.nist.gov/vuln/detail/CVE-2026-8275
  • vuldb.com/submit/811145
  • vuldb.com/vuln/362572
  • vuldb.com/vuln/362572/cti

Code Behaviors & Features

Detect and mitigate CVE-2026-8275 with GitLab Dependency Scanning

Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →

Affected versions

All versions before 2.41.7

Fixed versions

  • 2.41.7

Solution

Upgrade to version 2.41.7 or above.

Impact 3.7 LOW

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L

Learn more about CVSS

Weakness

  • CWE-190: Integer Overflow or Wraparound
  • CWE-192: Integer Coercion Error

Source file

go/github.com/bettercap/bettercap/v2/CVE-2026-8275.yml

Spotted a mistake? Edit the file on GitLab.

  • Site Repo
  • About GitLab
  • Terms
  • Privacy Statement
  • Contact

Page generated Sun, 14 Jun 2026 12:17:00 +0000.