PT-2026-66779 · Wings · Wings

CVE-2026-52857

·

Published

2026-07-31

·

Updated

2026-07-31

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Wings versions prior to 1.13.0
Description Unbounded configuration-file parsers for json, yaml, and xml within parser.go lack file size limits or checks. This allows the processing of oversized non-file parser configuration files, which can lead to the exhaustion of process memory and cause an Out-of-Memory (OOM) condition, where the system terminates the process because it has run out of available memory.
Recommendations Update to version 1.13.0.

Fix

Allocation of Resources Without Limits

Resource Exhaustion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-52857
GHSA-Q6HH-GP44-4HCM

Affected Products

Wings