← Back to feed
Vulnerabilities & PatchesEmerging1 sourceAug 19, 2026 · 12:44via CVEFeed

CVE-2026-76235 - Cockpit-ws: cockpit: cockpit-ws: unauthenticated remote memory leak via cockpitlang cookie in send_login_html

Brief

CVE ID : CVE-2026-76235

Published : Aug. 19, 2026, 12:44 p. m.

  • 24 minutes ago

Description : A memory leak flaw was found in cockpit-ws. The login page handler leaks a heap allocation on every unauthenticated request that carries a CockpitLang cookie, allowing a remote unauthenticated attacker to exhaust memory on the host and cause a denial of service.

Severity: 7.5

  • HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more...

Read more on CVEFeed