VYPR

Quarkus

by IBM

CVEs (2)

  • CVE-2026-16308HigJul 30, 2026
    risk 0.49cvss 7.5epss 0.01

    IBM Enterprise Build of Quarkus 3.27.1 through 3.27.4.SP2, and 3.33.1 through 3.33.2.SP2 Quarkus REST could allow a remote attacker to cause a denial of service due to unbounded accumulation of multipart MIME part-header bytes.

  • CVE-2026-19651HigSep 8, 2026
    risk 0.48cvss 7.4epss 0.00

    IBM Enterprise Build of Quarkus 3.27.1 through 3.27.5, and 3.33.1 through 3.33.3 could allow an attacker to bypass authorization by manipulating URL query parameters due to incorrect mapping of values to untrusted query string input.