Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-rhr9-hgcm-x289 | Netmaker Vulnerable to Denial of Service via Server Shutdown Endpoint |
Thu, 12 Mar 2026 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:gravitl:netmaker:*:*:*:*:*:*:*:* | |
| Metrics |
cvssV3_1
|
Mon, 09 Mar 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 09 Mar 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Gravitl
Gravitl netmaker |
|
| Vendors & Products |
Gravitl
Gravitl netmaker |
Sat, 07 Mar 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Netmaker makes networks with WireGuard. Prior to version 1.2.0, the /api/server/shutdown endpoint allows termination of the Netmaker server process via syscall.SIGINT. This allows any user to repeatedly shut down the server, causing cyclic denial of service with approximately 3-second restart intervals. This issue has been patched in version 1.2.0. | |
| Title | Netmaker: Denial of Service via Server Shutdown Endpoint | |
| Weaknesses | CWE-404 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-03-09T18:27:17.865Z
Reserved: 2026-03-04T16:26:02.897Z
Link: CVE-2026-29771
Updated: 2026-03-09T17:43:40.430Z
Status : Analyzed
Published: 2026-03-07T16:15:54.657
Modified: 2026-03-12T13:58:38.540
Link: CVE-2026-29771
No data.
OpenCVE Enrichment
Updated: 2026-04-16T11:00:10Z
Github GHSA