Vulnerability Details CVE-2026-73198
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit a vulnerability in the `/ipa/i18n_messages` endpoint by sending an arbitrarily large request body. This can cause the service to consume excessive memory, leading to memory exhaustion, degraded responsiveness, and a denial of service (DoS) condition.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 28.0%
CVSS Severity
CVSS v3 Score 7.5