Use-after-free in Janus WebRTC Server - #VU151862
Published: September 23, 2026
Vulnerability details
The vulnerability allows a remote user to compromise confidentiality, integrity, and availability.
The vulnerability exists due to use-after-free in the Janus SIP and NoSIP plugins when handling peer messages that look up a destroyed session by its unique ID. A remote user can send ordinary peer messages referencing a stale unique ID to compromise confidentiality, integrity, and availability.
No race condition or admin API access is required.