{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3awebsocketserverextensionhandlerwebsocketserverextensionhandler/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:websocketserverextensionhandler:websocketserverextensionhandler:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":7.5,"id":"CVE-2026-93558"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["WebSocketServerExtensionHandler"],"_cs_severities":["low"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":[],"content_html":"\u003cp\u003eCVE-2026-93558 identifies a critical vulnerability within the WebSocketServerExtensionHandler component. The issue stems from a failure to implement bounded constraints on per-connection queues, allowing an attacker to inflate these queues through crafted WebSocket traffic. This uncontrolled growth consumes excessive system memory and processing cycles, ultimately resulting in a denial-of-service (DoS) condition. Because this vulnerability targets the fundamental handling of WebSocket extensions, any service or application leveraging this specific handler is susceptible if it does not enforce its own upstream resource limits. Defenders should note that this is a resource exhaustion attack, which may manifest as a sudden spike in memory usage or latency before service failure.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eThe vulnerability poses a significant risk to the availability of network services utilizing the WebSocketServerExtensionHandler. A successful attack results in service disruption, preventing legitimate users from establishing or maintaining WebSocket connections. This impact is particularly severe in high-concurrency environments where resource exhaustion can be triggered rapidly by a single unauthorized client, potentially leading to cascading failures in downstream services dependent on the affected component.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003eDetection engineering teams should monitor for anomalous spikes in memory utilization and WebSocket connection counts associated with the affected handler.\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eReview system-level resource monitoring (e.g., Prometheus, Datadog) for sustained high memory consumption originating from the application process hosting WebSocketServerExtensionHandler.\u003c/li\u003e\n\u003cli\u003eImplement request rate limiting and connection timeouts at the network edge or load balancer level to mitigate the impact of malicious WebSocket traffic.\u003c/li\u003e\n\u003cli\u003ePatch or update the affected library containing the WebSocketServerExtensionHandler to a version that enforces per-connection queue limits.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-09-18T16:08:07Z","date_published":"2026-09-18T16:08:07Z","id":"https://feed.craftedsignal.io/briefs/2026-09-cve-2026-93558-dos/","summary":"A vulnerability in WebSocketServerExtensionHandler allows an attacker to trigger unbounded per-connection queue growth, leading to resource exhaustion and denial of service.","title":"Denial of Service via Unbounded Queue Growth in WebSocketServerExtensionHandler","url":"https://feed.craftedsignal.io/briefs/2026-09-cve-2026-93558-dos/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:a:websocketserverextensionhandler:websocketserverextensionhandler:*:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}