CVE-2026-103101: Input Validation
Published Sep 30, 2026
·Updated
Pexip Infinity 30.0 through 40.x before 41.0 is affected by improper input validation in the web server that allows a malicious attacker to render a Pexip Infinity node inaccessible.
Affected Software
1 affected component
Pexip Pexip Infinity>=30.0<41.0
Event History
Sep 30, 2026
CVE Published
via MITRE·02:24 AM
Data Sourced
via MITRE·02:24 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Which deployments are affected?
Pexip Infinity versions 30.0 through 40.x are affected. Version 41.0 is identified as the version before which the issue applies.
2
Does exploitation require authentication or user interaction?
No. The supplied vector indicates network-based exploitation with low attack complexity, no privileges required, and no user interaction required.
3
What is the operational impact of successful exploitation?
A malicious attacker can render a Pexip Infinity node inaccessible. The supplied vector indicates high availability impact, with no stated confidentiality or integrity impact.
4
What should teams do to remediate this issue?
Upgrade affected Pexip Infinity deployments to version 41.0 or later.