An uncontrolled allocation of resources without limits or throttling in the e-mail handling in OTRS allows excessive allocation which may lead to the abortion of the webserver.This issue affects OTRS:
* 8.0.X
* 2023.X
* 2024.X
* 2025.X
* 2026.X before 2026.4.X
Please note that ((OTRS)) Community Edition 6.x, OTRS 7.x and products based on the ((OTRS)) Community Edition also very likely to be affected
* 8.0.X
* 2023.X
* 2024.X
* 2025.X
* 2026.X before 2026.4.X
Please note that ((OTRS)) Community Edition 6.x, OTRS 7.x and products based on the ((OTRS)) Community Edition also very likely to be affected
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
Update to OTRS 2026.4.1. or later. Please note that there will be no OTRS 7 patches
Workaround
No workaround given by the vendor.
References
History
Mon, 01 Jun 2026 04:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An uncontrolled allocation of resources without limits or throttling in the e-mail handling in OTRS allows excessive allocation which may lead to the abortion of the webserver.This issue affects OTRS: * 8.0.X * 2023.X * 2024.X * 2025.X * 2026.X before 2026.4.X Please note that ((OTRS)) Community Edition 6.x, OTRS 7.x and products based on the ((OTRS)) Community Edition also very likely to be affected | |
| Title | Email with special content can lead to DoS | |
| Weaknesses | CWE-400 CWE-770 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: OTRS
Published:
Updated: 2026-06-01T03:33:23.990Z
Reserved: 2026-05-21T07:53:13.253Z
Link: CVE-2026-48187
No data.
Status : Received
Published: 2026-06-01T04:16:22.410
Modified: 2026-06-01T04:16:22.410
Link: CVE-2026-48187
No data.
OpenCVE Enrichment
No data.