Description
Suricata is a network IDS, IPS and NSM engine. Prior to versions 8.0.3 and 7.0.14, various inefficiencies in xff handling, especially for alerts not triggered in a tx, can lead to severe slowdowns. Versions 8.0.3 and 7.0.14 contain a patch. As a workaround, disable XFF support in the eve configuration. The setting is disabled by default.
INFO
Published Date :
2026-01-27T18:10:27.881Z
Last Modified :
2026-01-27T18:24:24.317Z
Source :
GitHub_M
AFFECTED PRODUCTS
The following products are affected by CVE-2026-22261 vulnerability.
| Vendors | Products |
|---|---|
| Oisf |
|
REFERENCES
Here, you will find a curated list of external links that provide in-depth information to CVE-2026-22261.
CVSS Vulnerability Scoring System
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact