What is CVE-2026-67591?
CVE-2026-67591 is a vulnerability in Apache Qpid ProtonJ2. An authenticated attacker can exceed the session flow control incoming window limit, potentially leading to a denial-of-service (DoS) condition. Versions through 1.1.0 are affected, and upgrading to version 1.2.0 is recommended.
Azərbaycanca: CVE-2026-67591 Apache Qpid ProtonJ2-də aşkarlanmış zəiflikdir. Autentifikasiya olunmuş hücumçu session flow control 'incoming window' limitini aşa bilər. Nəticədə denial of service (DoS) vəziyyəti yaranır. 1.1.0 və əvvəlki versiyalar təsirlənir, 1.2.0 versiyasına yeniləmək lazımdır.
Related CVEs
link basis: shared vendor: Apache
FAQ2
Which product is affected by CVE-2026-67591?
CVE-2026-67591 affects the Apache Qpid ProtonJ2 library.
Does exploiting CVE-2026-67591 require authentication?
Yes, the attacker must be authenticated.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.