PT-2026-83108 · Sveltekit · Sveltekit

CVE-2026-82256

·

Published

2026-07-24

·

Updated

2026-08-31

CVSS v4.0

6.9

Medium

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions SvelteKit versions prior to 2.69.1
Description Insufficient validation of remote form function payload sizes allows an attacker to crash the Node process by sending excessively large payloads. Repeated exploitation of this issue leads to a denial of service by continuously crashing the application process.
Recommendations Update to version 2.69.1 or later.

Exploit

Fix

DoS

Resource Exhaustion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-82256
GHSA-WQJV-9729-C5Q2

Affected Products

Sveltekit