What is CVE-2026-15562?
CVE-2026-15562 is a vulnerability found in the jboss-remoting component of Red Hat JBoss EAP. A remote unauthenticated attacker who can reach port 8080, 9990, or 4447 and complete a specific `Upgrade: jboss-remoting` handshake can cause OutOfMemory errors, leading to server-wide denial of service (DoS).
Azərbaycanca: CVE-2026-15562, Red Hat JBoss EAP-nin jboss-remoting komponentində tapılan bir zəiflikdir. Uzaqdan doğrulama olmadan 8080, 9990 və ya 4447 portlarına əlçatan olan təcavüzkar, xüsusi `Upgrade: jboss-remoting` handshake-i tamamlayaraq server miqyasında OutOfMemory xətalarına səbəb olaraq xidmət rəddi (DoS) yarada bilər.
Related CVEs
link basis: same weakness class CWE-400; shared vendor: EAP
FAQ1
In which product was CVE-2026-15562 discovered and what condition is required for the DoS attack?
The vulnerability was discovered in the jboss-remoting component of Red Hat JBoss EAP. The DoS attack requires an attacker to reach port 8080, 9990, or 4447 and complete a specific `Upgrade: jboss-remoting` handshake.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.