Water-Melon Melon commit 9df9292 and below is vulnerable to Denial of Service. The HTTP component doesn't have any maximum length. As a result, an excessive request header could cause a denial of service by consuming RAM memory.
References
| Link | Resource |
|---|---|
| https://suphawith-phusanbai.gitbook.io/book-of-suphawith/my-exploits/cve-2025-71031-denial-of-service-in-melon-c-library | Exploit Third Party Advisory |
| https://suphawith-phusanbai.gitbook.io/book-of-suphawith/my-exploits/denial-of-service-in-melon-c-library | Exploit Third Party Advisory |
Configurations
History
No history.
Information
Published : 2026-02-04 20:16
Updated : 2026-02-25 18:47
NVD link : CVE-2025-71031
Mitre link : CVE-2025-71031
CVE.ORG link : CVE-2025-71031
JSON object : View
Products Affected
melang
- melon
CWE
CWE-400
Uncontrolled Resource Consumption
