Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-90668

Опубликовано: 13 сент. 2026
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

The webserver in UnrealIRCd 6.0.5 through 6.2.6 before 6.2.7 does not limit the number of HTTP request headers, which allows remote attackers to cause a denial of service (memory consumption and unresponsive server) via an HTTP request with an unlimited number of headers, if a websocket or JSON-RPC listener is enabled (disabled by default).

EPSS

Процентиль: 26%
0.00332
Низкий

7.5 High

CVSS3

Дефекты

CWE-770

Связанные уязвимости

CVSS3: 7.5
debian
4 дня назад

The webserver in UnrealIRCd 6.0.5 through 6.2.6 before 6.2.7 does not ...

CVSS3: 7.5
github
4 дня назад

The webserver in UnrealIRCd 6.0.5 through 6.2.6 before 6.2.7 does not limit the number of HTTP request headers, which allows remote attackers to cause a denial of service (memory consumption and unresponsive server) via an HTTP request with an unlimited number of headers, if a websocket or JSON-RPC listener is enabled (disabled by default).

EPSS

Процентиль: 26%
0.00332
Низкий

7.5 High

CVSS3

Дефекты

CWE-770