CVE-2026-22263

Published Jan 27, 2026

Last updated a month ago

Overview

Description
Suricata is a network IDS, IPS and NSM engine. Starting in version 8.0.0 and prior to version 8.0.3, inefficiency in http1 headers parsing can lead to slowdown over multiple packets. Version 8.0.3 patches the issue. No known workarounds are available.
Source
security-advisories@github.com
NVD status
Analyzed
Products
suricata

Risk scores

CVSS 3.1

Type
Secondary
Base score
5.3
Impact score
1.4
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Severity
MEDIUM

Weaknesses

security-advisories@github.com
CWE-1050
nvd@nist.gov
NVD-CWE-noinfo

Social media

Hype score
Not currently trending

Configurations