← Voltar à pesquisa de CVEs

CVE-2026-31984

Audit logging functionality

Descrição

A denial-of-service vulnerability caused by unbounded resource allocation was discovered in the audit logging functionality, due to a missing size limit on input recorded into audit entries. An unauthenticated attacker can submit requests containing excessively large input that is recorded into audit entries, possibly exhausting the available disk space and rendering the system inoperable.

CVSS 7.5EPSS 0.27399999999999997%Risco 0.77
Ver fonte
Publicação
2026-07-09 08:16:47
Versões afetadas
unknown
Tipo
Software crítico
Última alteração
2026-08-11 13:18:14
Vetor
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H