PT-2026-32018 · Unknown · Tandoor Recipes

Minato500

·

Published

2026-04-10

·

Updated

2026-04-11

·

CVE-2026-27460

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Tandoor Recipes versions prior to 2.6.5
Description Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists. Prior to version 2.6.5, a Denial of Service (DoS) issue exists in the recipe import functionality. An authenticated user can cause a server crash or significant performance degradation by uploading a large ZIP file (ZIP Bomb).
Recommendations Update to version 2.6.5 or later.

Exploit

Fix

DoS

Weakness Enumeration

Related Identifiers

CVE-2026-27460

Affected Products

Tandoor Recipes