Skip to main content
Version: v1.4.x

CVE-2026-27141

CVE Details​

Visit the official vulnerability details page for CVE-2026-27141 to learn more.

Initial Publication​

02/26/2026

Last Update​

06/17/2026

Third Party Dependency​

golang.org/x/net

NIST CVE Summary​

Due to missing nil check, sending 0x0a-0x0f HTTP/2 frames will cause a running server to panic

CVE Severity​

7.5

Our Official Summary​

Investigation is ongoing to determine how this vulnerability affects our products.

Status​

Deferred

Affected Products & Versions​

VersionPaletteAIPaletteAI VerteX
1.4.0⚠️ Impacted⚠️ Impacted

Revision History​

No revisions available.