Junglewise Threat Intelligence

CVE-2026-21438: GO-2026-4483 - webtransport-go: Memory Exhaustion Attack due to Missing Cleanup of Streams Map in github.com/quic-go/webtransport-go

CVE-2026-21438 · Severity: low · CVSS 3.1 · Published 2026-02-17

Technologies: github.com/quic-go/webtransport-go (Go). Vendors: Go.

Executive brief

webtransport-go: Memory Exhaustion Attack due to Missing Cleanup of Streams Map in github.com/quic-go/webtransport-go

Affected products

  • Go github.com/quic-go/webtransport-go

Related threats