Medium severity5.9NVD Advisory· Published Aug 27, 2026· Updated Sep 4, 2026
CVE-2026-47857
CVE-2026-47857
Description
In Reactor Core, applications that use the Flux.windowTimeout operator with fairBackpressure enabled are vulnerable to a Denial of Service (DoS) condition. Reactor Core 3.8.0 - 3.8.6 Reactor Core 3.5.0 - 3.7.19 Reactor Core 3.4.41 and earlier
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: 3.8.0 - 3.8.6, 3.5.0 - 3.7.19, <=3.4.41
Patches
Vulnerability mechanics
References
1- spring.io/security/cve-2026-47857nvdVendor Advisory
News mentions
0No linked articles in our index yet.