Denial of Service Vulnerability in Red Hat Search API
CVE-2026-71469
7.5HIGH
What is CVE-2026-71469?
A flaw identified in the Red Hat Search V2 API allows an unauthenticated attacker to exploit the system by sending crafted requests with unique random bearer tokens. Each token generates a permanent entry in the unbounded tokenReviews cache, which fails to clear effectively. This oversight can lead to significant memory exhaustion within the API pod, potentially resulting in a Denial of Service (DoS) condition, thereby disrupting service availability.