CVE-2026-40984

In Micrometer, it is possible for a user to provide specially crafted HTTP requests that may cause a denial-of-service (DoS) condition. Affected versions: micrometer-core 1.16.0 through 1.16.5; 1.15.0 through 1.15.11; 1.14.0 through 1.14.15; 1.13.0 through 1.13.18; 1.9.0 through 1.9.17. micrometer-jetty11 1.16.0 through 1.16.5; 1.15.0 through 1.15.11; 1.14.0 through 1.14.15; 1.13.0 through 1.13.18. micrometer-jetty12 1.16.0 through 1.16.5; 1.15.0 through 1.15.11; 1.14.0 through 1.14.15; 1.13.0 through 1.13.18.
Configurations

No configuration.

History

23 Jul 2026, 08:10

Type Values Removed Values Added
Summary
  • (es) En Micrometer, es posible que un usuario proporcione solicitudes HTTP especialmente diseñadas que pueden causar una condición de denegación de servicio (DoS). Versiones afectadas: micrometer-core 1.16.0 a 1.16.5; 1.15.0 a 1.15.11; 1.14.0 a 1.14.15; 1.13.0 a 1.13.18; 1.9.0 a 1.9.17. micrometer-jetty11 1.16.0 a 1.16.5; 1.15.0 a 1.15.11; 1.14.0 a 1.14.15; 1.13.0 a 1.13.18. micrometer-jetty12 1.16.0 a 1.16.5; 1.15.0 a 1.15.11; 1.14.0 a 1.14.15; 1.13.0 a 1.13.18.

21 Jul 2026, 12:18

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2026:41951 -

10 Jul 2026, 12:16

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2026:37390 -

09 Jul 2026, 13:17

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2026:36839 -

30 Jun 2026, 03:19

Type Values Removed Values Added
CWE CWE-770
References
  • () https://access.redhat.com/security/cve/CVE-2026-40984 -
  • () https://bugzilla.redhat.com/show_bug.cgi?id=2486716 -
  • () https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-40984.json -

09 Jun 2026, 05:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-09 05:16

Updated : 2026-07-23 08:10


NVD link : CVE-2026-40984

Mitre link : CVE-2026-40984

CVE.ORG link : CVE-2026-40984


JSON object : View

Products Affected

No product.

CWE
CWE-400

Uncontrolled Resource Consumption

CWE-770

Allocation of Resources Without Limits or Throttling