MEDIUMMaven

Apache Commons Lang is vulnerable to Uncontrolled Recursion when processing long inputs

Apache Commons Lang is vulnerable to Uncontrolled Recursion when processing long inputs

CVE-2025-48924Published 1 year agoUpdated 5 days agoSource: OSV

Affected packages

  • commons-lang:commons-lang≥ 2.0
  • org.apache.commons:commons-lang33.0 → 3.18.0

Exploit signal

Known exploited (CISA KEV)
No
EPSS score
EPSS percentile

EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.

Apache Commons Lang is vulnerable to Uncontrolled Recursion when processing long inputs | HackTribune