Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-75005

Inefficient Algorithmic Complexity vulnerability in Apache APISIX. A single small request can pin a gateway worker at 100% CPU for an extended period in graphql-limit-count routes. This issue affects Apache APISIX: 3.17.0. Users are recommended to upgrade to version 3.18.0, which fixes the issue.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 54.4%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2026-75005
  • Apache » Apisix » Version: 3.17.0
    cpe:2.3:a:apache:apisix:3.17.0


Contact Us

Shodan ® - All rights reserved