What is CVE-2026-69207?
CVE-2026-69207 is a ReDoS vulnerability in the CORS middleware of the Hono web framework. An attacker can cause a denial of service by sending a crafted `Access-Control` header during a preflight OPTIONS request. Update to version 4.12.34 immediately to mitigate this.
Azərbaycanca: CVE-2026-69207, Hono veb framework-in CORS middleware-ində ReDoS zəifliyidir. Bu, təcavüzkara xüsusi hazırlanmış `Access-Control` başlığı ilə xidməti dayandırmağa imkan verir. Təsirə məruz qalmamaq üçün dərhal 4.12.34 versiyasına yeniləməlisiniz.
Related CVEs
link basis: same weakness class CWE-400
FAQ2
Which web framework is affected by CVE-2026-69207?
The Hono web framework.
To which version should I update to mitigate CVE-2026-69207?
Update to version 4.12.34.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.