← العودة للجدول
CVE-2026-77856
CVE-2026-77856 — Allocation of Resources Without Limits or Throttling vulnerability in ash-projec
📅 2026-09-01
🟠 High 🔥 No NVD Vulnerability Vulnerability

📋 الوصف الكامل

Allocation of Resources Without Limits or Throttling vulnerability in ash-project ash_typescript allows an unauthenticated attacker to exhaust the BEAM atom table and abort the node via client-supplied typed struct field names. resolve_typed_struct_field/2 in lib/ash_typescript/rpc/field_processing/field_selector.ex looks a client-supplied field name up in the typed struct's reverse map and,

💻 الأنظمة المتأثرة

⚠️ نوع التهديد

Vulnerability

🔗 CVE ID

CVE-2026-77856

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2026-77856 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ← 🔍 Valters IT ←