CVE-2026-39197: Medium severity Datadog Vector vulnerability
An issue in the /util/http/prelude.rs endpoint of Datadog, Inc Vector v0.54.0 allows attackers to cause a Denial of Service (DoS) via a crafted request or payload.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
Datadog Vector v0.54.0from your environment.If Datadog Vector v0.54.0 is not required, uninstall or replace it until an upstream fix is available.
- Configuration
Disable the /util/http/prelude.rs HTTP endpoint or configure the Vector HTTP server to reject or restrict requests to this route to prevent crafted requests or payloads from reaching it.
Datadog Vector HTTP endpoint /util/http/prelude.rs access = disabled or restricted - Compensating control
Deploy WAF or reverse-proxy rules to detect and block malformed or suspicious requests targeting /util/http/prelude.rs and implement HTTP rate-limiting on Vector endpoints to mitigate DoS attempts.
- Compensating control
Restrict network access to the Vector HTTP endpoint to trusted IPs using firewall rules or network ACLs so only necessary sources can reach the service.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-39197?
The severity of CVE-2026-39197 is medium with a CVSS score of 6.5.
What type of vulnerability is CVE-2026-39197?
CVE-2026-39197 is a Denial of Service (DoS) vulnerability.
How do I fix CVE-2026-39197?
To fix CVE-2026-39197, update to the latest version of Datadog Vector that addresses this vulnerability.
What software is affected by CVE-2026-39197?
CVE-2026-39197 affects Datadog Vector version 0.54.0.
When was CVE-2026-39197 published?
CVE-2026-39197 was published on June 15, 2026.