VYPR

rpm package

suse/apache-commons-configuration2&distro=SUSE Linux Enterprise Server 16.0

pkg:rpm/suse/apache-commons-configuration2&distro=SUSE%20Linux%20Enterprise%20Server%2016.0

Vulnerabilities (2)

  • CVE-2026-45205MedMay 14, 2026
    affected < 2.15.0-160000.1.1fixed 2.15.0-160000.1.1

    Uncontrolled Recursion vulnerability in Apache Commons. When processing an untrusted configuration file, Commons Configuration will throw a StackOverflowError for YAML input with cycles. This issue affects Apache Commons: from 2.2 before 2.15.0. Users are recommended to upgrade

  • CVE-2025-48924Jul 11, 2025
    affected < 2.15.0-160000.1.1fixed 2.15.0-160000.1.1

    Uncontrolled Recursion vulnerability in Apache Commons Lang. This issue affects Apache Commons Lang: Starting with commons-lang:commons-lang 2.0 to 2.6, and, from org.apache.commons:commons-lang3 3.0 before 3.18.0. The methods ClassUtils.getClass(...) can throw StackOverflowErr