PT-2026-81850 · Mesop · Mesop

·

CVE-2026-77357

·

Published

2026-08-25

·

Updated

2026-08-25

CVSS v4.0

8.7

High

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Mesop versions prior to 1.3.3
Description Applications running in debug mode expose a GET '/hot-reload' endpoint. An unauthenticated attacker can provide high values to the counter parameter, triggering an unbounded loop that holds worker threads. This leads to worker pool exhaustion, causing the server to become unresponsive and crash, requiring a manual restart to restore service.
Recommendations Update to version 1.3.3.

Exploit

Fix

Resource Exhaustion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-77357
GHSA-8P72-497J-83MX

Affected Products

Mesop