SEPTEMBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-26080

LOW · CVSS 3.7 EPSS 0.42%

Source: NVD + CISA KEV + EPSS · Published 2026-07-20 · Last synced 2026-08-19

CyberRota Analysis

AI-Generated

HAProxy Community Edition versions 3.2.x through 3.3.x prior to 3.3.3, along with HAProxy Enterprise and ALOHA, are vulnerable to a mishandling of varint that can lead to an infinite loop or crash. While the severity is rated low, organizations using these versions should prioritize patching to maintain service availability and prevent potential disruptions.

CVE
CVE-2026-26080
Severity
LOW
CVSS
3.7
EPSS
0.42%

Original NVD Description

HAProxy Community Edition 3.2.x through 3.3.x before 3.3.3 can enter a loop or crash because varint is mishandled. HAProxy Enterprise and ALOHA are also affected.