VYPR
High severity7.5NVD Advisory· Published Jun 5, 2026· Updated Jun 5, 2026

CVE-2026-45291

CVE-2026-45291

Description

A vulnerability in Cloudburst Network prior to 1.0.0.CR3-20260418.124334-32 allows attackers to close the parent netty channel, causing denial of service.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

A vulnerability in Cloudburst Network prior to 1.0.0.CR3-20260418.124334-32 allows attackers to close the parent netty channel, causing denial of service.

Vulnerability

A vulnerability exists in Cloudburst Network versions prior to 1.0.0.CR3-20260418.124334-32 that affects publicly accessible software relying on these versions. The bug allows an attacker to exploit a flaw in the Network component to close the parent netty channel.

Exploitation

An attacker can exploit this vulnerability by interacting with the affected Network component. The exact conditions or sequence of steps required to trigger the bug and close the parent netty channel are not detailed in the available references, but it impacts publicly accessible software.

Impact

Successful exploitation of this vulnerability allows an attacker to close the parent netty channel, rendering the affected software inoperable. This results in a denial-of-service condition for the application.

Mitigation

All consumers of the Cloudburst Network library should upgrade to at least version 1.0.0.CR3-20260418.124334-32 to address this vulnerability [1]. Geyser users should ensure they are using builds #1117 or later [1]. There are no known workarounds beyond updating the library [1].

AI Insight generated on Jun 5, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2
  • Cloudburstmc/Networkinferred2 versions
    <1.0.0.CR3-20260418.124334-32+ 1 more
    • (no CPE)range: <1.0.0.CR3-20260418.124334-32
    • (no CPE)range: <1.0.0.CR3-20260418.124334-32

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.