Medium severity6.5NVD Advisory· Published Oct 3, 2026
CVE-2026-105113
CVE-2026-105113
Description
Nezha Dashboard from 1.8.0 before 2.3.13 contains an improper locking vulnerability where a non-deferred mutex unlock leaks on a nil-map panic path. Any authenticated non-admin member can issue four notification API calls to permanently deadlock the alerting subsystem, then exhaust memory with blocking requests.
Affected products
1Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.