Description
A flaw has been found in ag-ui-protocol ag-ui 1.0. Affected is an unknown function of the file src/stream/sse_parser.cpp of the component JSON Parser. Executing a manipulation can lead to resource consumption. The attack may be performed from remote. This patch is called ab6e0bc298996caac2b4b0b3ec0bd8d32a15a186. Applying a patch is advised to resolve this issue.
Published: 2026-09-16
Score: 5.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Resource Exhaustion (Denial of Service)
Action: Apply Patch Immediately
AI Analysis

Impact

A flaw exists in the JSON Parser within ag‑ui 1.0, specifically in src/stream/sse_parser.cpp. Manipulating JSON input can trigger uncontrolled resource consumption, leading to performance degradation or denial of service. The attack may be performed from remote. The issue arises from unchecked resource usage (CWE‑400) and improper handling of input boundaries (CWE‑404). Crafting oversized or malformed JSON can cause the parser to allocate excessive memory or enter long processing loops, potentially exhausting CPU, memory, or I/O on the hosting machine and disrupting the availability of the application or other services that rely on ag‑ui.

Affected Systems

The affected component is ag‑ui‑protocol’s ag‑ui library, version 1.0. The vulnerability resides in the JSON parsing module within src/stream/sse_parser.cpp. No other versions are mentioned as affected in the available information.

Risk and Exploitability

The CVSS score of 5.3 classifies this problem as moderate severity. With an EPSS score of less than 1 % and no mention in the CISA KEV catalog, the likelihood of exploitation today is low, but the remote nature of the attack and the potential for resource exhaustion mean that it remains a viable threat, especially for high‑traffic or exposed deployments. An attacker who can reach the SSE endpoint could repeatedly send crafted JSON streams to consume CPU or memory, leading to a denial of service that can be mitigated by rate limiting, size restrictions, or patching.

Generated by OpenCVE AI on September 18, 2026 at 06:35 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply the patch corresponding to commit ab6e0bc298996caac2b4b0b3ec0bd8d32a15a186 or upgrade to a version where the issue is fixed.
  • Enforce strict validation and size limits on JSON messages accepted by the SSE parser, rejecting oversized or malformed payloads.
  • Apply rate limiting and monitoring on the SSE endpoint to detect and mitigate any attempt to overload the parser.

Generated by OpenCVE AI on September 18, 2026 at 06:35 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 18 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 16 Sep 2026 13:45:00 +0000

Type Values Removed Values Added
Description A flaw has been found in ag-ui-protocol ag-ui 1.0. Affected is an unknown function of the file src/stream/sse_parser.cpp of the component JSON Parser. Executing a manipulation can lead to resource consumption. The attack may be performed from remote. This patch is called ab6e0bc298996caac2b4b0b3ec0bd8d32a15a186. Applying a patch is advised to resolve this issue.
Title ag-ui-protocol ag-ui JSON sse_parser.cpp resource consumption
First Time appeared Ag-ui-protocol
Ag-ui-protocol ag-ui
Weaknesses CWE-400
CWE-404
CPEs cpe:2.3:a:ag-ui-protocol:ag-ui:*:*:*:*:*:*:*:*
Vendors & Products Ag-ui-protocol
Ag-ui-protocol ag-ui
References
Metrics cvssV2_0

{'score': 4, 'vector': 'AV:N/AC:L/Au:S/C:N/I:N/A:P/E:ND/RL:OF/RC:C'}

cvssV3_0

{'score': 4.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L/E:X/RL:O/RC:C'}

cvssV3_1

{'score': 4.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L/E:X/RL:O/RC:C'}

cvssV4_0

{'score': 5.3, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X'}


Subscriptions

Ag-ui-protocol Ag-ui
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-09-18T17:49:43.680Z

Reserved: 2026-09-16T05:36:15.071Z

Link: CVE-2026-92363

cve-icon Vulnrichment

Updated: 2026-09-18T17:49:37.490Z

cve-icon NVD

Status : Deferred

Published: 2026-09-16T14:17:16.550

Modified: 2026-09-18T18:18:07.347

Link: CVE-2026-92363

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-18T06:45:04Z

Weaknesses
  • CWE-400

    Uncontrolled Resource Consumption

  • CWE-404

    Improper Resource Shutdown or Release