CVE-2025-71377CWE-1025

stoatchat before 20250210-1 Unrestricted Message History Fetch

High · published July 16, 2026

CVSS v4.0
8.7
EPSS
1%
Percentile
49.5
In the wild
Unconfirmed
What it is

stoatchat (delta) versions before 20250210-1 (0.8.2) contain a logic error in the query messages route. When fetching messages 'nearby' another message, the database query can be given a message limit of zero, which the database interprets as 'no limit'. A remote unauthenticated attacker can craft nearby message fetch requests to download an entire channel's message history in a single expensive request, and can send many such requests in parallel, resulting in denial of service through resource exhaustion.

The record
Technical detail
CVSS v4.0
8.7 · HIGH
Vector
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
EPSS
0.00666 · 49.5th percentile
Weakness
CWE-1025 · Comparison Using Wrong Factors
Published
2026-07-16T12:19Z
EPSS history
Timeline
  • 16 JUL 12:19Z
    stoatchat before 20250210-1 Unrestricted Message History Fetch
    cvelistv5