Логотип exploitDog
bind:CVE-2026-21438
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2026-21438

Количество 2

Количество 2

nvd логотип

CVE-2026-21438

около 2 месяцев назад

webtransport-go is an implementation of the WebTransport protocol. Prior to 0.10.0, an attacker can cause unbounded memory consumption repeatedly creating and closing many WebTransport streams. Closed streams were not removed from an internal session map, preventing garbage collection of their resources. This vulnerability is fixed in v0.10.0.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-2f2x-8mwp-p2gc

около 2 месяцев назад

webtransport-go: Memory Exhaustion Attack due to Missing Cleanup of Streams Map

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-21438

webtransport-go is an implementation of the WebTransport protocol. Prior to 0.10.0, an attacker can cause unbounded memory consumption repeatedly creating and closing many WebTransport streams. Closed streams were not removed from an internal session map, preventing garbage collection of their resources. This vulnerability is fixed in v0.10.0.

CVSS3: 5.3
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-2f2x-8mwp-p2gc

webtransport-go: Memory Exhaustion Attack due to Missing Cleanup of Streams Map

CVSS3: 5.3
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу