Intel

AIKIDO-2026-10310

fluentd is vulnerable to Denial of Service (DoS)

Denial of Service (DoS) Pre-CVE
Found by Aikido Intel before public disclosure or CVE publication.
Published Mar 9, 2026

33

Low Risk

This Affects:

RUBYfluentd
1.6.0 - 1.19.1
Fixed in 1.19.2
Are you affected? Scan for Free

TL;DR

Affected versions of fluentd are vulnerable to a Denial of Service (DoS) in the HTTP server helper used by plugins. Due to the request body not being properly closed for certain POST requests, sockets may remain open and accumulate over time. An attacker capable of sending a large number of crafted requests could exploit this behavior to exhaust available file descriptors or sockets, potentially leading to a denial of service. This issue is addressed by ensuring the request body is explicitly closed after processing.

Who does this affect?

You are affected if you are using a version that falls within the vulnerable range.

Background info

fluentd is vulnerable to Denial of Service (DoS) in versions 1.6.0 - 1.19.1.

How to fix this

Upgrade the fluentd library to the patch version.