CVE-2026-67321

Aliases:UBUNTU-CVE-2026-67321DEBIAN-CVE-2026-67321GHSA-hcpx-6fm6-wx23CGA-2v69-4295-4h8hCGA-36q8-f434-9xh5CGA-5669-phxj-x7v7CGA-5pq6-g2fm-8qqjCGA-5q93-x7gg-886jCGA-7vrj-g7h7-94wxCGA-8cj5-m7qc-v4wpCGA-9p4p-x9q5-mmgvCGA-ccvm-fxv2-wr6hCGA-cff7-c7xf-q2wgCGA-g4mh-vvmw-fvp2CGA-mvxr-qw9q-m7j6CGA-p39q-6vq2-gv88CGA-p8f5-h974-m37gCGA-q7wp-8xg4-xmfmCGA-qqpv-j278-jhq5CGA-qxgg-99vv-96mrCGA-r6cg-5q3v-3fhvCGA-r9rj-cvjx-rc7xCGA-rvhx-2qc9-8p9rCGA-v6mg-j7v8-q5m3CGA-vg5g-9g5v-hh7pCGA-xrmr-78p9-pf2vCGA-hppq-44cg-q4wvCGA-vrwp-7pv6-j32jCGA-3w3x-76xh-x94v
Analyzed
Published: 01 Aug 2026, 12:22
Last modified:03 Aug 2026, 15:18

Vulnerability Summary

Overall Risk (default)
medium
40/100
CVSS Score
7.5 HIGH
v3.1 (nvd)
EPSS Score
0.36% LOW
0% probability 0.00%
KEV
Not listed
Ransomware
No reports
Public exploits
1 found
Dark Web
Not detected

Timeline

01 Aug 2026, 12:22
Published
Vulnerability first disclosed
03 Aug 2026, 15:18
Last Modified
Vulnerability information updated

Description

axios versions 0.31.1 before 0.33.0 and 1.15.1 before 1.18.0 contain an incomplete depth-limit bypass in toFormData.js when serializing objects with top-level keys ending in '{}'. Attackers who control object keys and nested values passed to axios form or parameter serialization can trigger a RangeError from JSON.stringify, causing denial of service in the affected request path.

CVSS Metrics

  • v4.0MEDIUMScore: 6.9CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N
  • v4.0MEDIUMScore: 6.9CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
  • v3.1HIGHScore: 7.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS Trends

Current EPSS score: 0.36% Percentile: 30%

Techniques & Countermeasures

  • CWE-674Uncontrolled Recursion

    The product does not properly control the amount of recursion that takes place, consuming excessive resources, such as allocated memory or the program stack.

Affected Systems

  • chainguardgitlab-rails-ce-19.1

    < 19.1.7-r6

  • chainguardgitlab-rails-ce-19.2

    < 19.2.5-r2

  • chainguardjitsucom-jitsu-console

    < 2.11.0-r30

  • chainguardkubeflow-centraldashboard

    < 1.10.0-r26

  • chainguardlangfuse-3

    < 3.223.0-r0

  • chainguardlangfuse-3-compat

    < 3.225.7-r6

  • chainguardlangfuse-3-worker

    < 3.223.0-r0

  • chainguardlerna

    < 9.0.7-r11

  • chainguardnextcloud-server-32

    < 32.0.12-r6

  • chainguardnextcloud-server-33

    < 33.0.6-r8

  • chainguardopensearch-dashboards-3

    < 3.7.0-r11

  • chainguardprism

    < 5.16.0-r1

  • wolfijitsucom-jitsu-console

    < 2.11.0-r30

  • wolfikubeflow-centraldashboard

    < 1.10.0-r26

  • wolfilangfuse-3

    < 3.223.0-r0

  • wolfilangfuse-3-compat

    < 3.225.7-r6

  • wolfilangfuse-3-worker

    < 3.223.0-r0

  • wolfilerna

    < 9.0.7-r11

  • wolfinextcloud-server-32

    < 32.0.12-r6

  • wolfinextcloud-server-33

    < 33.0.6-r8

  • wolfiopensearch-dashboards-3

    < 3.7.0-r11

  • wolfiprism

    < 5.16.0-r1

  • axiosaxios

    ≥ 0.31.1, < 0.33.0 | ≥ 1.15.1, < 1.18.0

  • debiannode-axios

    all | all | all | < 1.18.0-1

  • ubuntunode-axios

    all | all | all | all | all

  • Npmaxios

    ≥ 0.31.1, < 0.33.0 | ≥ 1.15.1, < 1.18.0

References (15)