Security Advisory
CVE-2022-51008
CVSS 5.3
MEDIUM
Vulnerability Description
PocketMine-MP before 4.12.3 fails to limit unauthenticated sessions, allowing attackers to exhaust player slots by creating sessions without sending LoginPacket. Attackers can flood the server with unauthenticated connections that occupy max-player slots, preventing legitimate players from joining.
Published Date
2026-09-06T12:17:14.930
Data Feed
NIST National Vulnerability Database