HIGH GitHub
CVE-2026-52776
compliance-trestle has an URLSecurityValidator SSRF allowlist bypass via IPv4-mapped IPv6 and 0.0.0.0
### Summary
`compliance-trestle` 4.0.3 (latest) ships an `URLSecurityValidator` in `trestle/core/remote/security.py` to block SSRF to loopback / link-local / cloud-metadata endpoints from the HTTPSFetcher and SFTPFetcher remote-fetch paths. The allowlist is incomplete and can be bypassed by four equivalent address representations that resolve to the same blocked host but evade the validator's checks:
- IPv4-mapped IPv6 literals (`[::ffff:169.254.169.254]`, `[::ffff:127.0.0.1]`, `[::ffff:10.0.0
Affected Products
- pip/compliance-trestle < 4.1.0
References
- https://github.com/advisories/GHSA-h47f-gmjp-m7rr
- https://github.com/oscal-compass/compliance-trestle/security/advisories/GHSA-h47f-gmjp-m7r
- https://github.com/oscal-compass/compliance-trestle/commit/d107cd16efe8eb15d46be3c1d97f1ec
- https://github.com/advisories/GHSA-h47f-gmjp-m7rr
This high severity vulnerability was published on 2026-08-12 via GitHub. Affected: pip/compliance-trestle < 4.1.0.
vulnfeed aggregates 10467 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.