Skip to content
Denial of Service Vulnerability in Cockpit (CVE-2026-91149)

Denial of Service Vulnerability in Cockpit (CVE-2026-91149)

First seen 19 Sep 2026, 01:56 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster September 19, 2026 at 01:58 UTC
  • CVE-2026-91149 allows unauthenticated DoS attacks on Cockpit.
  • Attackers can exhaust system resources by flooding connections to the service.
  • No active exploitation reported, but urgent remediation is recommended.

A critical vulnerability identified as CVE-2026-91149 affects the Cockpit management interface, allowing unauthenticated remote attackers to exploit the `cockpit-tls` service. By initiating numerous simultaneous connections, attackers can create an unbounded number of detached threads, leading to denial of service (DoS) and making the service unavailable for legitimate users. The flaw primarily affects systems with exposed Cockpit deployments, particularly those on servers and bastion hosts. The vulnerability was published on September 18, 2026, and while it poses a high availability risk, there are currently no reports of active exploitation. Recommended mitigations include restricting access and applying vendor fixes promptly. Monitoring for unusual connection patterns is also advised.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Timeline

2026-09-18
CVE-2026-91149 published
Red Hat disclosed a denial-of-service vulnerability in Cockpit affecting unauthenticated remote access.
access.redhat.com
2026-09-19
Vulnerability reported by Red Packet Security
Red Packet Security highlighted the risk of CVE-2026-91149 and recommended immediate action for affected systems.
Redpacketsecurity

More articles in this cluster (2)

Following this threat?

Track CVE-2026-91149 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed