CVE-2026-55685
CVE Details
Visit the official vulnerability details page for CVE-2026-55685 to learn more.
Initial Publication
07/27/2026
Last Update
07/28/2026
Third Party Dependency
react-router
NIST CVE Summary
React Router is a router for React. In versions 7.0.0 through 7.17.0, the manifest endpoint could be accessed via unauthenticated targeted requests that would put heavy load on the server and slow down response times. This issue is a follow up to CVE-2026-42342, and does not does not impact React Router applications using Declarative Mode (<BrowserRouter>) or Data Mode (createBrowserRouter/<RouterProvider>). This issue has been fixed in version 7.18.0.
CVE Severity
Our Official Summary
Investigation is ongoing to determine how this vulnerability affects our products.
Status
Undergoing Analysis
Affected Products & Versions
| Version | PaletteAI | PaletteAI VerteX |
|---|---|---|
| 1.2.0 | ⚠️ Impacted | ⚠️ Impacted |
Revision History
No revisions available.