CVE-2026-1174

A vulnerability was determined in birkir prime up to 0.4.0.beta.0. This affects an unknown function of the file /graphql of the component GraphQL Alias Handler. This manipulation causes resource consumption. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized. The project was informed of the problem early through an issue report but has not responded yet.
References
Link Resource
https://github.com/birkir/prime/
https://github.com/birkir/prime/issues/545 Exploit Issue Tracking Vendor Advisory
https://vuldb.com/?ctiid.341768 Permissions Required VDB Entry
https://vuldb.com/?id.341768 Third Party Advisory VDB Entry
https://vuldb.com/?submit.731105 Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:birkir:prime:*:*:*:*:*:*:*:*

History

23 Feb 2026, 09:16

Type Values Removed Values Added
References
  • () https://github.com/birkir/prime/ -

04 Feb 2026, 18:19

Type Values Removed Values Added
First Time Birkir
Birkir prime
CPE cpe:2.3:a:birkir:prime:*:*:*:*:*:*:*:*
References () https://github.com/birkir/prime/issues/545 - () https://github.com/birkir/prime/issues/545 - Exploit, Issue Tracking, Vendor Advisory
References () https://vuldb.com/?ctiid.341768 - () https://vuldb.com/?ctiid.341768 - Permissions Required, VDB Entry
References () https://vuldb.com/?id.341768 - () https://vuldb.com/?id.341768 - Third Party Advisory, VDB Entry
References () https://vuldb.com/?submit.731105 - () https://vuldb.com/?submit.731105 - Third Party Advisory, VDB Entry

19 Jan 2026, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-19 20:15

Updated : 2026-02-23 09:16


NVD link : CVE-2026-1174

Mitre link : CVE-2026-1174

CVE.ORG link : CVE-2026-1174


JSON object : View

Products Affected

birkir

  • prime
CWE
CWE-400

Uncontrolled Resource Consumption

CWE-404

Improper Resource Shutdown or Release