← Retour à la recherche de CVE

CVE-2026-31984

Audit logging functionality

Description

A denial-of-service vulnerability caused by unbounded resource allocation was discovered in the audit logging functionality, due to a missing size limit on input recorded into audit entries. An unauthenticated attacker can submit requests containing excessively large input that is recorded into audit entries, possibly exhausting the available disk space and rendering the system inoperable.

CVSS 7.5EPSS 0.27399999999999997%Risque 0.77
Voir la source
Publication
2026-07-09 08:16:47
Versions concernées
unknown
Type
Logiciel critique
Dernière modification
2026-08-11 13:18:14
Vecteur
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H