What is CVE-2026-66257?
CVE-2026-66257 is a vulnerability found in Apache Qpid Proton-J. A pre-authentication attacker can exploit unbounded symbol value caching to cause resource exhaustion, resulting in a denial of service (DoS). Versions through 0.34.1 are affected, and users are recommended to upgrade to version 0.35.0 to fix the issue.
Azərbaycanca: CVE-2026-66257 Apache Qpid Proton-J kitabxanasında aşkarlanmış boşluqdur. Autentifikasiyadan əvvəl hücumçu limitsiz simvol keşləmə (unbounded symbol value caching) mexanizmindən istifadə edərək resurs tükənməsinə səbəb ola bilər ki, bu da denial of service (DoS) ilə nəticələnir. 0.34.1 və əvvəlki versiyalar təsirlənir, 0.35.0 versiyasına yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-400; shared vendor: Apache
FAQ2
What product is affected by CVE-2026-66257?
CVE-2026-66257 is a vulnerability found in the Apache Qpid Proton-J library.
What threat can arise as a result of CVE-2026-66257?
This vulnerability can allow a pre-authentication attacker to exploit unbounded symbol value caching, causing resource exhaustion and resulting in a denial of service (DoS).
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.