CVE-2026-91147 PUBLISHED

Cockpit: cockpit: denial of service in `cockpit-ws` due to url-root handling without a trailing slash

Assigner: redhat
Reserved: 14.09.2026 Published: 18.09.2026 Updated: 18.09.2026

A flaw was found in cockpit-ws. This vulnerability allows a remote, unauthenticated attacker to cause a Denial of Service (DoS) by sending a specially crafted request. When the WebService.UrlRoot is configured and a request is made to the exact URL-root prefix without a trailing slash, cockpit-ws can terminate unexpectedly. This issue leads to the unavailability of the Cockpit web service.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS Score: 5.9

Product Status

Vendor Red Hat
Product Red Hat Enterprise Linux 10
Versions Default: affected
Vendor Red Hat
Product Red Hat Enterprise Linux 7
Versions Default: affected
Vendor Red Hat
Product Red Hat Enterprise Linux 8
Versions Default: affected
Vendor Red Hat
Product Red Hat Enterprise Linux 9
Versions Default: affected
Vendor Red Hat
Product Red Hat OpenShift Dev Spaces
Versions Default: affected
Vendor Red Hat
Product Red Hat OpenShift Dev Spaces
Versions Default: affected
Vendor Red Hat
Product Red Hat OpenShift Dev Spaces
Versions Default: affected

Credits

  • This issue was discovered by Found by AISLE in partnership with Red Hat.

References

Problem Types

  • Reachable Assertion CWE