
CVE-2026-31903 The WebSocket Application Programming Interface lacks restrictions on the number of authentication requests. This absence of rate limiting may allow an attacker to co… https://www.cve.org/CVERecord?id=CVE-2026-31903
Post summary
CVE-2026-31903 exposes a lack of rate limiting on WebSocket authentication, potentially allowing abuse; no PoC, exploit, patch, or active exploitation is reported.


