What is CVE-2026-69111?
CVE-2026-69111: An unauthenticated denial of service vulnerability exists in Milvus versions through 2.6.22 and 3.0.0. Remote attackers can exploit the unprotected '/management/stop' endpoint on the management server (port 9091) by sending a crafted HTTP GET request to terminate service components.
Azərbaycanca: CVE-2026-69111: Milvus vektor verilənlər bazasının 2.6.22 və 3.0.0 versiyalarında autentifikasiya tələb etməyən denial of service (DoS) zəifliyi aşkarlanıb. Uzaqdan hücum edən şəxslər idarəetmə serverinin 9091 portuna xüsusi HTTP GET sorğusu göndərərək '/management/stop' endpointini sui-istifadə edə və servis komponentlərini sıradan çıxara bilər.
Related CVEs
link basis: same weakness class CWE-306
FAQ2
Which versions of Milvus are affected by CVE-2026-69111?
The DoS vulnerability affects Milvus vector database versions through 2.6.22 and 3.0.0.
How can an attacker exploit CVE-2026-69111 to disrupt the service?
A remote attacker can send a crafted HTTP GET request to the unprotected '/management/stop' endpoint on the management server's port 9091 to terminate service components.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.