VYPR

jackrabbit-spi2dav

by Apache

CVEs (1)

  • CVE-2026-92415MedOct 7, 2026
    risk 0.45cvss —epss —

    — Use of Externally-Controlled Input to Select Classes or Code vulnerability in Apache Jackrabbit's WebDAV/Davex client. A malicious WebDAV/DavEx server, or an attacker able to intercept the connection, can cause the client to instantiate arbitrary classes from its classpath,…