CVE-2026-33592
Last modified
CVE-2026-33592 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. An unauthenticated remote attacker can exhaust server memory via the FindServers Discovery Service in open62541. The serverUris field of FindServersRequest is not validated for length or array size. EPSS estimates a 0.39% chance of exploitation in the next 30 days.
Description
An unauthenticated remote attacker can exhaust server memory via the FindServers Discovery Service in open62541. The serverUris field of FindServersRequest is not validated for length or array size. An attacker can declare an arbitrarily large string (up to ~3.9 GB) delivered across intermediate chunks without ever sending the final chunk. The server buffers all chunks in RAM indefinitely until the SecureChannel times out. The attack is pre-session and bypasses all encryption configuration. The issue affects open62541: from 1.4.0 through 1.4.16, from 1.5.0 through 1.5.4, master.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| open62541 project / o6 Automation GmbH | open62541 | >= 1.4.0, <= 1.4.16; >= 1.5.0, <= 1.5.4; master |
References
Timeline
- Published
- Last Modified
- Status
- Awaiting Analysis
Frequently Asked Questions
What is CVE-2026-33592?
How severe is CVE-2026-33592?
How do I fix CVE-2026-33592?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-33587Lack of user input sanitisation in Open Notebook v1.8.3 allo…10
- CVE-2026-33588Lack of user input validation in the file upload functionali…8.1
- CVE-2026-33589Lack of user input validation in the file upload functionali…6.5
- CVE-2026-3359The Form Maker by 10Web – Mobile-Friendly Drag & Drop Contac…7.5
- CVE-2026-33590Insecure default settings of Portainer CE grant regular (non…8.5
- CVE-2026-33591A vulnerability in Wapt Server before version 2.6.1.17813 al…10
- CVE-2026-33593A client can trigger a divide by zero error leading to crash…7.5
- CVE-2026-33594A client can trigger excessive memory allocation by generati…7.5
- CVE-2026-33595A client can trigger excessive memory allocation by generati…7.5
- CVE-2026-33596A client might theoretically be able to cause a mismatch bet…6.5
- CVE-2026-33597PRSD detection denial of service7.5
- CVE-2026-33598A cached crafted response can cause an out-of-bounds read if…9.1
Are you affected by CVE-2026-33592?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
