Skip to main content
HIGH

CVE-2026-79625

CVSS v3

8.1

HIGH

EPSS Score

0.4 %

exploit probability, as of 2026-09-30

CISA KEV

No

known exploited

Exploitation

—

SSVC status

Description

Affected products do not properly synchronize access to their monitoring functionality. When multiple clients send concurrent requests, this may lead to incorrect reads or writes, or to corruption of internal memory structures. An authenticated remote attacker with monitoring access can exploit this issue to cause incorrect data processing or a denial-of-service condition.

Technical details

CVSS v3 Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Published
2026-09-30
Last Modified
2026-09-30

Frequently asked questions

What is CVE-2026-79625?

Affected products do not properly synchronize access to their monitoring functionality. When multiple clients send concurrent requests, this may lead to incorrect reads or writes, or to corruption of internal memory structures. An authenticated remote attacker with monitoring access can exploit this issue to cause incorrect data processing or a denial-of-service condition.

Is CVE-2026-79625 actively exploited?

Active exploitation of CVE-2026-79625 has not been confirmed. Its EPSS score was 0.4% on 2026-09-30, the estimated probability of exploitation in the next 30 days.

What is the CVSS score for CVE-2026-79625?

CVE-2026-79625 has a CVSS v3 base score of 8.1 (HIGH severity), with vector string CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H.

Is CVE-2026-79625 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.

No credit card required · 500 free checks/month · Free API key