VYPR
Medium severity4.2NVD Advisory· Published Sep 18, 2026· Updated Sep 18, 2026

CVE-2026-85511

CVE-2026-85511

Description

A flaw was found in EAP's Elytron. An EAP application whose security domain is backed by an Elytron token-realm with oauth2-introspection would allow parameter substitution due to missing URL encoding.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

1

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.