Boletines de Vulnerabilidades |
CVE-2026-66142 |
|
| Software afectado | APACHE |
| Apache Neethi is vulnerable to uncontrolled recursion when parsing policies that lack policy Ids or with deeply nested structures, which may lead to a denial of service attack when parsing policies due to runtime memory exhaustion. Users are recommended to upgrade to version 3.2.3, which fixes this issue. | |
Link: |
|
| https://nvd.nist.gov/vuln/detail/CVE-2026-66142 | |














