CVE-2026-47138 | parse-community parse-server up to 8.6.76/9.9.1-alpha.0 request-header Parser redos (GHSA-38m6-82c8-4xfm)
A vulnerability classified as problematic was found in parse-community parse-server up to 8.6.76/9.9.1-alpha.0. Affected by this vulnerability is an unknown functionality of the component request-header Parser. Executing a manipulation can lead to inefficient regular expression complexity.
This vulnerability appears as CVE-2026-47138. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is advised.VulDB Recent EntriesRead More