Home

Description

ManageIQ is an open-source management platform. A flaw was found in the ManageIQ API prior to version radjabov-2 where a malformed TimeProfile could be created causing later UI and API requests to timeout leading to a Denial of Service. Version radjabov-2 contains a patch. One may also apply the patch manually.

PUBLISHED Reserved 2026-01-07 | Published 2026-01-21 | Updated 2026-01-21 | Assigner GitHub_M




HIGH: 7.1CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

Problem types

CWE-20: Improper Input Validation

Product status

< radjabov-2
affected

References

github.com/...nageiq/security/advisories/GHSA-m832-x3g8-63j3

github.com/...79cef10c7d0278d8a37c3f547c426948180df4df.patch

github.com/...ommit/86132851257d73ed9e31a88315e47a8a2b838113

cve.org (CVE-2026-22598)

nvd.nist.gov (CVE-2026-22598)

Download JSON