MEDIUMVulnerability

CVE-2026-75841

ArcadeDB before 26.8.1 contains a denial of service vulnerability in the Cypher range() function that allows authenticated users to exhaust server heap memory. Attackers can submit oversized range() expressions with large bounds to trigger OutOfMemoryError and cause temporary service degradation or unavailability.

Properties

severity
MEDIUM
score
4.3
epss_score
0.00272
cve_id
CVE-2026-75841
vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
published_at
2026-08-18T12:19:34.463
last_modified
2026-09-08T20:32:39.347
epss_percentile
0.19281

Related Entities (3)

ENRICHED_BY (1)

[Source]FIRST EPSS

HAS_WEAKNESS (1)

[Weakness]Allocation of Resources Without Limits or Throttling

DESCRIBED_BY (1)

[Source]NVD

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-75841 — Ninja Signal Threat Intelligence | Ninja Signal