PT-2026-48943 · Typesense · Typesense
CVE-2026-47216
·
Published
2026-06-12
·
Updated
2026-06-12
CVSS v4.0
8.7
High
| Vector | AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
Typesense versions prior to 29.1
Typesense versions prior to 30.2
Description
An unauthenticated denial-of-service issue exists in the '/multi search' endpoint. A specially crafted request can trigger an unhandled exception during processing, which causes the server process to terminate and results in service unavailability. This can be exploited over the network without authentication.
Recommendations
Update to version 29.1.
Update to version 30.2.
Exploit
Fix
Improper Check for Exceptional Conditions
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Typesense