CVE-2026-2108

MEDIUM

jsbroks COCO Annotator <0.11.1 - DoS

Title source: llm
STIX 2.1

Description

A vulnerability was determined in jsbroks COCO Annotator up to 0.11.1. This impacts an unknown function of the file /api/info/long_task of the component Endpoint. This manipulation causes denial of service. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.

Scores

CVSS v3 5.3
EPSS 0.0004
EPSS Percentile 12.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-404
Status published
Products (1)
jsbroks/coco_annotator < 0.11.1
Published Feb 07, 2026
Tracked Since Feb 18, 2026