Skip to content
cyberMEDIUM2026-05-04 19:16 UTC

CVE-2026-42154 - Prometheus: remote read endpoint allows denial of service via crafted snappy payload

CVE ID :CVE-2026-42154 Published : May 4, 2026, 7:16 p.m. | 54 minutes ago Description :Prometheus is an open-source monitoring system and time series database. Prior to versions 3.5.3 and 3.11.3, the remote read endpoint (/api/v1/read) does not validate the declared decoded length in a snappy

ORIGINAL SOURCE →via CVE Feed Latest
ADVERTISEMENT
⚡ STAY AHEAD

Events like this, convergence-verified across 689 sources, land in your inbox every Sunday. Free.

GET THE SUNDAY BRIEFING →

RELATED · cyber