Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2026-22260


Suricata is a network IDS, IPS and NSM engine. Starting in version 8.0.0 and prior to version 8.0.3, Suricata can crash with a stack overflow. Version 8.0.3 patches the issue. As a workaround, use default values for `request-body-limit` and `response-body-limit`.


Published

2026-01-27T18:15:55.383

Last Modified

2026-01-29T21:03:54.520

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Primary
    CWE-674
  • Type: Primary
    CWE-787

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application oisf suricata < 8.0.3 Yes

References