CVE-2025-64422 | coollabsio coolify 4.0.0-beta.434 Header /login X-Forwarded-For allocation of resources (GHSA-688j-rm43-5r8x / WID-SEC-2026-0031)
A vulnerability classified as problematic has been found in coollabsio coolify 4.0.0-beta.434. This affects an unknown function of the file /login of the component Header Handler. The manipulation of the argument X-Forwarded-For leads to allocation of resources.
This vulnerability is documented as CVE-2025-64422. The attack can be initiated remotely. There is not any exploit available.