icon

We found results for “

CVE-2026-22261

Good to know:

icon
icon

Date: January 27, 2026

Suricata is a network IDS, IPS and NSM engine. Prior to versions 8.0.3 and 7.0.14, various inefficiencies in xff handling, especially for alerts not triggered in a tx, can lead to severe slowdowns. Versions 8.0.3 and 7.0.14 contain a patch. As a workaround, disable XFF support in the eve configuration. The setting is disabled by default.

Severity Score

Severity Score

Weakness Type (CWE)

Excessive Platform Resource Consumption within a Loop

CWE-1050

Top Fix

icon

Upgrade Version

Upgrade to version suricata - 7.0.14;suricata - 8.0.3;https://github.com/OISF/suricata.git - suricata-7.0.14;https://github.com/OISF/suricata.git - suricata-8.0.3

Learn More

CVSS v3.1

Base Score:
Attack Vector (AV): NETWORK
Attack Complexity (AC): HIGH
Privileges Required (PR): NONE
User Interaction (UI): NONE
Scope (S): UNCHANGED
Confidentiality (C): NONE
Integrity (I): NONE
Availability (A): LOW

Do you need more information?

Contact Us