CVE-2026-105112 | nezhahq Nezha up to 2.3.8 Alerting Subsystem UpdateGroup/DeleteGroup id race condition

SecurityVulns

A vulnerability was found in nezhahq Nezha up to 2.3.8. It has been declared as problematic. This impacts the function UpdateGroup/DeleteGroup of the component Alerting Subsystem. Executing a manipulation of the argument ID can lead to race condition.

This vulnerability is handled as CVE-2026-105112. The attack can be executed remotely. There is not any exploit available.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More