PT-2026-29959 · Julia · Openresty Jll+2

Published

2026-03-23

·

Updated

2026-03-23

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

JLSEC-2026-3

Affected Products

Openresty Jll
Libnode Jll
Nghttp2 Jll