← Back to CVE search

CVE-2026-31984

Audit logging functionality

Description

A denial-of-service vulnerability caused by unbounded resource allocation was discovered in the audit logging functionality, due to a missing size limit on input recorded into audit entries. An unauthenticated attacker can submit requests containing excessively large input that is recorded into audit entries, possibly exhausting the available disk space and rendering the system inoperable.

CVSS 7.5EPSS 0.27399999999999997%Risk 0.77
View source
Published
2026-07-09 08:16:47
Affected versions
unknown
Type
Critical software
Last modified
2026-08-11 13:18:14
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H