CVE-2026-92363 PUBLISHED

ag-ui-protocol ag-ui JSON sse_parser.cpp resource consumption

Assigner: VulDB
Reserved: 16.09.2026 Published: 16.09.2026 Updated: 16.09.2026

A flaw has been found in ag-ui-protocol ag-ui 1.0. Affected is an unknown function of the file src/stream/sse_parser.cpp of the component JSON Parser. Executing a manipulation can lead to resource consumption. The attack may be performed from remote. This patch is called ab6e0bc298996caac2b4b0b3ec0bd8d32a15a186. Applying a patch is advised to resolve this issue.

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X
CVSS Score: 5.3

Product Status

Vendor ag-ui-protocol
Product ag-ui
Versions
  • Version 1.0 is affected

Credits

  • meraklbz (VulDB User) reporter

References

Problem Types

  • Resource Consumption CWE
  • Denial of Service CWE