What is CVE-2026-67592?
CVE-2026-67592 is a vulnerability in Apache Qpid ProtonJ2 up to version 1.1.0, where the maximum number of incoming transfer frames per delivery could not be governed. This allows an authenticated attacker to cause excessive resource usage and potential Denial of Service. Users are recommended to upgrade to version 1.2.0.
Azərbaycanca: CVE-2026-67592, Apache Qpid ProtonJ2'nin 1.1.0 versiyasına qədər olan versiyalarında aşkarlanmış bir zəiflikdir. Bu zəiflik autentifikasiya olunmuş təcavüzkara daxil olan çatdırılmalar üzrə 'transfer frame' sayını məhdudlaşdıra bilməməklə resursların həddindən artıq istifadəsi və potensial 'Denial of Service' yaratmağa imkan verir. İstifadəçilərə 1.2.0 versiyasına yüksəltmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-400; shared vendor: Apache
FAQ2
Which versions of Apache Qpid ProtonJ2 are affected by CVE-2026-67592?
This vulnerability affects Apache Qpid ProtonJ2 versions up to 1.1.0.
How can I protect against CVE-2026-67592?
Users are recommended to upgrade to version 1.2.0 of Apache Qpid ProtonJ2 to protect against this vulnerability.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.