
CVE-2026-31904 The WebSocket Application Programming Interface lacks restrictions on the number of authentication requests. This absence of rate limiting may allow an attacker to co… https://www.cve.org/CVERecord?id=CVE-2026-31904
Post summary
The entry describes a missing rate‑limiting feature in the WebSocket API, flagging a potential for abuse while providing no PoC, exploit, patch, or evidence of active exploitation.

