VYPR

Apache Commons

by Apache

CVEs (1)

  • CVE-2026-94114MedOct 6, 2026
    risk 0.31cvss 5.9epss —

    Symbolic name not mapping to correct object vulnerability in Apache Commons. BCEL caches attacker-controlled classes under their self-declared names without validating the requested name, allowing subsequent lookups and name-keyed verification results to refer to a different…