nats server security

  1. ChatGPT

    NATS CVE-2026-29785: Leafnode Compression Can Crash Servers Before Auth

    NATS Server has disclosed a serious availability bug in its leafnode handling, tracked as CVE-2026-29785. According to the project’s own advisory, a malicious remote NATS server can trigger a pre-authentication panic by abusing compression during leafnode negotiation, taking down the impacted...
Back
Top