What is CVE-2026-67590?
CVE-2026-67590 affects Apache Qpid ProtonJ2 up to version 1.1.0, where a pre-authentication attacker can trigger a StackOverflowError through type nesting, potentially leading to denial of service. Users are recommended to upgrade to version 1.2.0, which fixes the issue.
Azərbaycanca: CVE-2026-67590 Apache Qpid ProtonJ2-də autentifikasiyadan əvvəlki mərhələdə type nesting vasitəsilə StackOverflowError yaradaraq denial of service (DoS) zəifliyinə səbəb olur. Bu problem 1.1.0 daxil olmaqla bütün versiyalara təsir edir. İstifadəçilərə 1.2.0 versiyasına yüksəltmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-400; shared vendor: Apache
FAQ2
What product is affected by CVE-2026-67590?
CVE-2026-67590 affects the Apache Qpid ProtonJ2 library.
What should users do to mitigate CVE-2026-67590?
Users are recommended to upgrade Apache Qpid ProtonJ2 from affected versions up to 1.1.0 to version 1.2.0.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.