PT-2026-66779 · Wings · Wings
CVE-2026-52857
·
Published
2026-07-31
·
Updated
2026-07-31
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Wings versions prior to 1.13.0
Description
Unbounded configuration-file parsers for
json, yaml, and xml within parser.go lack file size limits or checks. This allows the processing of oversized non-file parser configuration files, which can lead to the exhaustion of process memory and cause an Out-of-Memory (OOM) condition, where the system terminates the process because it has run out of available memory.Recommendations
Update to version 1.13.0.
Fix
Allocation of Resources Without Limits
Resource Exhaustion
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Wings