Beveiligingsadvies

CVE-2026-19113

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-08-07 19:20:32
Laatst bijgewerkt 2026-08-10 18:24:08
Toegewezen door HashiCorp
CVSS-score 5.3
Status PUBLISHED

Beschrijving

Consul Community Edition and Consul Enterprise 1.3.0 through 2.0.2 are vulnerable to an unauthenticated denial of service in several agent HTTP API endpoints. A remote caller could cause the agent to consume substantial memory before the request was rejected. This vulnerability, CVE-2026-19113, is fixed in Consul 2.0.3 and Consul Enterprise 1.21.17, 1.22.11, and 2.0.3.