CVE-2026-40208EPSS p10.7%

CVE-2026-40208CVE-2026-40208

Description

An attacker might be able to delay the processing of DoH3 queries by sending DoH3 GET queries with an invalid DATA frame.

Scoring

CVSS 3.7 ()
VectorCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
EPSS0.21% probability of exploitation · percentile 10.7% · 2026-08-11T12:00:17Z
Last modified2026-06-25
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.