Vulnerability Description
MOOS core-moos through 10.4.0 contains a denial of service vulnerability in the MOOSDB HTTP server that creates unbounded connections and threads without limits. Attackers can open many connections and send endless header data to exhaust server threads and memory, causing service unavailability.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- https://github.com/themoos/core-moos
- https://github.com/themoos/core-moos/blob/ec9c77c68fcbdef8f5e4c60fe243acd223433f
- https://github.com/themoos/core-moos/commit/dfef92b3bc31886bc47e4d680aef583b78cb
- https://github.com/themoos/core-moos/pull/79
- https://www.vulncheck.com/advisories/moos-core-moos-through-10.4.0-moosdb-http-s
FAQ
What is CVE-2026-85450?
CVE-2026-85450 is a vulnerability with a CVSS score of 7.5 (HIGH). MOOS core-moos through 10.4.0 contains a denial of service vulnerability in the MOOSDB HTTP server that creates unbounded connections and threads without limits. Attackers can open many connections an...
How severe is CVE-2026-85450?
CVE-2026-85450 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-85450?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.