← Volver al buscador de CVEs

CVE-2026-31984

Audit logging functionality

Descripción

A denial-of-service vulnerability caused by unbounded resource allocation was discovered in the audit logging functionality, due to a missing size limit on input recorded into audit entries. An unauthenticated attacker can submit requests containing excessively large input that is recorded into audit entries, possibly exhausting the available disk space and rendering the system inoperable.

CVSS 7.5EPSS 0.27399999999999997%Riesgo 0.77
Ver fuente
Publicación
2026-07-09 08:16:47
Versiones afectadas
unknown
Tipo
Software crítico
Última modificación
2026-08-11 13:18:14
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H