← العودة للجدول
CVE-2026-44545
CVE-2026-44545 — VulnCheck: daphne before 4.2.2 did not pass maxFramePayloadSize or maxMessagePayl
📅 2026-06-03
🟡 Medium 🔥 No VulnCheck DDoS DDoS CVSS 5.3

📋 الوصف الكامل

daphne before 4.2.2 did not pass maxFramePayloadSize or maxMessagePayloadSize to Autobahn's WebSocketServerFactory. Because Autobahn defaults both values to 0 (unlimited), an unauthenticated remote attacker could send arbitrarily large WebSocket messages or frames, causing excessive memory consumption and a denial of service.

💻 الأنظمة المتأثرة

⚠️ نوع التهديد

DDoS

🔗 CVE ID

CVE-2026-44545

📡 المصدر

VulnCheck

✅ الحلول والتخفيف

Refer to CVE-2026-44545 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←