CVE ID :CVE-2026-47077 Published : May 25, 2026, 2 p.m. | 20ย hours, 23ย minutes ago Description :Allocation of Resources Without Limits or Throttling vulnerability in benoitc hackney allows Flooding. hackney_h3:await_response_loop/6 accumulates the HTTP/3 response body in memory without any size cap. The after Timeout clause is a per-message inactivity timer that resets on every rece
Unbounded body accumulation
Exploit
CVE-2026-47077
MITRE CVE High
Refer to CVE-2026-47077 NVD advisory