PT-2026-48943 · Typesense · Typesense

CVE-2026-47216

·

Published

2026-06-12

·

Updated

2026-06-12

CVSS v4.0

8.7

High

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Typesense versions prior to 29.1 Typesense versions prior to 30.2
Description An unauthenticated denial-of-service issue exists in the '/multi search' endpoint. A specially crafted request can trigger an unhandled exception during processing, which causes the server process to terminate and results in service unavailability. This can be exploited over the network without authentication.
Recommendations Update to version 29.1. Update to version 30.2.

Exploit

Fix

Improper Check for Exceptional Conditions

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-47216
GHSA-FPX5-8C99-247J

Affected Products

Typesense