Unrated severityNVD Advisory· Published Aug 5, 2026· Updated Aug 5, 2026
Apache Qpid ProtonJ2: Unbounded type nesting can lead to pre-authentication stackoverflow
CVE-2026-67590
Description
A pre-authentication attacker could leverage type nesting to cause a StackOverflowError potentially leading to denial of service.
This issue affects Apache Qpid ProtonJ2: through 1.1.0.
Users are recommended to upgrade to version 1.2.0, which fixes the issue.
Affected products
1- Range: <=1.1.0
Patches
Vulnerability mechanics
References
1- lists.apache.org/thread/kmov6k7f3moqy01m1s370fl61vgos3lymitrevendor-advisory
News mentions
0No linked articles in our index yet.