Memory leak in WeeChat - #VU147385
Published: September 8, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to missing release of memory after effective lifetime in the relay api handshake handler when processing valid JSON request bodies that are not objects. A remote attacker can repeatedly send crafted POST requests to /api/handshake to cause a denial of service.