Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-81516— Steeltoe.Discovery.Consul: malformed 'secure' metadata aborts service instance lookup (DoS)

Quick assessment

Affected
SteeltoeOSS security-advisories
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Steeltoe 是一个开源项目,提供了一系列用于构建云原生应用的库。从版本 4.0.0 到 4.3.0, 在构造 对象时,会通过解析每个注册项的安全元数据,并进行严格的布尔值转换。如果某个主体可以注册 Consul 服务,但提供了非 或 的安全值,就会触发异常,导致整个实例列表的构造过程中断,从而使目标服务不可被发现。当 枚举所有服务时,一个格式错误的实例就足以中断跨所有服务的枚举过程。这种服务不可用的状态会持续存在,直到引发问题的注册项被移除。该问题在版本 4.3.0 中已修复。

CVSS 7.5 · High
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-81516

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Steeltoe.Discovery.Consul: malformed 'secure' metadata aborts service instance lookup (DoS)
Source: CVE Program / CVE List V5
Vulnerability Description
Steeltoe is an open source project that provides a collection of libraries that helps users build cloud-native applications. From 4.0.0 until 4.3.0, ConsulDiscoveryClient constructs ConsulServiceInstance objects by parsing each registration's secure metadata with a strict Boolean conversion. A principal that can register a Consul service can supply a secure value other than true or false, causing the exception from one instance to abort construction of the entire instance list and make the targeted service undiscoverable. When GetAllInstancesAsync enumerates all services, one malformed instance can abort enumeration across every service. The outage persists until the offending registration is removed. This issue is fixed in version 4.3.0.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
对异常条件的处理不恰当
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
SteeltoeOSS security-advisories >= 4.0.0, < 4.3.0 -

II. Public POCs for CVE-2026-81516

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-81516

登录查看更多情报信息。

Patches & Fixes for CVE-2026-81516 (1)

Vendor Advisories for CVE-2026-81516 (1)

Vendor Pages for CVE-2026-81516 (1)

Same Patch Batch · SteeltoeOSS · 2026-09-17 · 4 CVEs total

CVE-2026-81515 7.5 HIGH Steeltoe.Discovery.Eureka: malformed enum/bool/timestamp field aborts entire registry fetc
CVE-2026-81868 6.5 MEDIUM Steeltoe: Header-forwarded client cert lacks proof of private-key possession
CVE-2026-75523 5.9 MEDIUM Steeltoe.Management.Endpoint: HttpExchanges URI masking leaks query-string secrets

IV. Related Vulnerabilities

V. Comments for CVE-2026-81516

No comments yet


Leave a comment