{"id":"CVE-2026-69111","summary":"Milvus 2.6.22, 3.0.0 Unauthenticated Denial of Service via /management/stop","details":"Milvus through 2.6.22 and 3.0.0 contains an unauthenticated denial of service vulnerability that allows remote attackers to terminate service components by sending a crafted HTTP GET request to the management server on port 9091. Attackers can exploit the unprotected /management/stop endpoint, which bypasses REST API authentication middleware, by supplying a 'role' parameter to shut down the proxy, datanode, or querynode components, resulting in denial of service.","modified":"2026-08-12T03:51:28.632167814Z","published":"2026-08-05T19:18:23.499Z","database_specific":{"cna_assigner":"VulnCheck","cwe_ids":["CWE-306"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/69xxx/CVE-2026-69111.json"},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/69xxx/CVE-2026-69111.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-69111"},{"type":"ADVISORY","url":"https://www.vulncheck.com/advisories/milvus-unauthenticated-denial-of-service-via-management-stop"},{"type":"REPORT","url":"https://github.com/milvus-io/milvus/pull/49847"},{"type":"REPORT","url":"https://github.com/milvus-io/milvus/pull/51573"},{"type":"PACKAGE","url":"https://github.com/milvus-io/milvus"},{"type":"EVIDENCE","url":"https://github.com/milvus-io/milvus/issues/50763"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/milvus-io/milvus","events":[{"introduced":"0"},{"fixed":"830fdd6806a057dd7d1ffd1b7b470df7e2af9186"}],"database_specific":{"source":"DESCRIPTION","extracted_events":[{"introduced":"0"},{"fixed":"2.6.22"}]}}],"versions":["3.0.0","v2.6.21","pkg/v2.6.21","v2.6.20","pkg/v2.6.20","v2.6.19","pkg/v2.6.19","v2.6.18","pkg/v2.6.18","client/v2.6.5","v2.6.17","pkg/v2.6.17","v2.6.16","pkg/v2.6.16","client/v2.6.4","v2.6.15","pkg/v2.6.15","v2.6.14","pkg/v2.6.14","client/v2.6.3","v2.6.13","pkg/v2.6.13","v2.6.12","pkg/v2.6.12","v2.6.11","pkg/v2.6.11","v2.6.10","pkg/v2.6.10","v2.6.9","pkg/v2.6.9","v2.6.8","pkg/v2.6.8","client/v2.6.2","v2.6.7","pkg/v2.6.7","v2.6.6","pkg/v2.6.6","v2.6.4","pkg/v2.6.4","client/v2.6.1","v2.6.3","pkg/v2.6.3","v2.6.2","pkg/v2.6.2","v2.6.1","pkg/v2.6.1","client/v2.6.0","v2.6.0","pkg/v2.6.0","v2.6.0-rc1","client/v2.6.0-rc.1","v2.2-testing-20240702","v2.4.2","v2.3.0","pkg/v0.0.1","v2.3.0-beta","v2.0.1","v2.0.0","v2.0.0-pre-ga","v2.0.0-rc7","v2.0.0-rc6","v2.0.0-rc5","v2.0.0-rc4","v2.0.0-rc2","v2.0.0-rc1","v0.10.2","v0.10.1","v0.10.0","v0.9.0","v0.7.0","v0.6.0","v0.5.3","v0.5.2"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-69111.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V4","score":"CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N"}]}