HIGHNuGet

OpenTelemetry dotnet: Unbounded `grpc-status-details-bin` parsing in OTLP/gRPC retry handling

OpenTelemetry dotnet: Unbounded `grpc-status-details-bin` parsing in OTLP/gRPC retry handling

CVE-2026-40891Published 4 months agoUpdated 5 days agoSource: OSV

Affected packages

  • OpenTelemetry.Exporter.OpenTelemetryProtocol1.13.1 → 1.15.3

Exploit signal

Known exploited (CISA KEV)
No
EPSS score
EPSS percentile

EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.