CVE-2026-85730
highCVSS v3 Base Score
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
0.4%
Exploitation probability in 30 days
Top 70% most likely to be exploited
Attack Characteristics
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Confidentiality
None
Integrity
None
Availability
High
Published: September 4, 2026 (6 days ago)
Last Modified: September 4, 2026
Vendor: Red Hat
Source: REDHAT
Vulnerability Report
Generated by CyberWatcher
Description
A flaw was found in smol-toml, a TOML parser and serializer. A remote attacker could exploit an infinite loop in the `parse()` function by providing a specially crafted TOML document. This occurs when a value within an array or inline table is followed by a comment without a trailing newline. Successful exploitation leads to a Denial of Service (DoS), causing the parser to hang indefinitely and consume service processing capacity.
CWE
CWE-835Affected Products
Red Hat Ansible Automation Platform 2Red Hat Build of Podman DesktopRed Hat Developer HubRed Hat Enterprise Linux 10Red Hat Hardened ImagesRed Hat OpenShift AI (RHOAI)