CVE-2026-92361: ag-ui-protocol ag-ui SSE Client client.go resource consumption
A security vulnerability has been detected in ag-ui-protocol ag-ui 1.0. This affects an unknown function of the file sdks/community/go/pkg/client/sse/client.go of the component SSE Client. Such manipulation leads to resource consumption. The attack can be executed remotely. The pull request to fix this issue awaits acceptance.
Affected Software
Event History
Frequently Asked Questions
What level of access does an attacker need to exploit this issue?
The provided severity vector indicates that exploitation is network-accessible, has low attack complexity, requires low privileges, and does not require user interaction.
What security impact is identified?
The reported impact is resource consumption affecting availability. The supplied vector indicates no identified confidentiality or integrity impact.
Is a fix available?
A pull request to fix the issue exists, but it is awaiting acceptance. No released fixed version is provided.