High severity7.5NVD Advisory· Published Aug 5, 2026· Updated Aug 7, 2026
CVE-2026-67589
CVE-2026-67589
Description
A pre-authentication attacker could leverage type size/count handling to cause excessive allocation leading to potential denial of service.
This issue affects Apache Qpid ProtonJ2: through 1.1.0.
Users are recommended to upgrade to version 1.2.0, which fixes the issue.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2<=1.1.0+ 1 more
- (no CPE)range: <=1.1.0
- cpe:2.3:a:apache:qpid_protonj2:*:*:*:*:*:*:*:*range: <1.2.0
Patches
Vulnerability mechanics
References
2- www.openwall.com/lists/oss-security/2026/08/04/28nvdThird Party Advisory
- lists.apache.org/thread/bs24x4778dh72xtfs299cy8krvdlo47qnvdVendor Advisory
News mentions
0No linked articles in our index yet.