CRITICALMaven →
SNMP4J-Agent allows a remote attacker to execute arbitrary code via the snmp4jCfgStoragePath component
SNMP4J-Agent allows a remote attacker to execute arbitrary code via the snmp4jCfgStoragePath component
Affected packages
- org.snmp4j:snmp4j-agent— all versions
Exploit signal
- Known exploited (CISA KEV)
- No
- EPSS score
- —
- EPSS percentile
- —
EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.
Sources
- https://nvd.nist.gov/vuln/detail/CVE-2026-39006
- https://github.com/EaEa0001/security-advisories/blob/main/CVE-2026-39006.md
- scm:git:git@nmp.app:snmp4j-agent.git
Structured record: https://osv.dev/vulnerability/GHSA-7h7j-7vwp-cwfg
Recommended response stack
Some links are affiliate links — HackTribune may earn a commission at no extra cost to you.
Get incidents like this as alerts for your stack.
Join the beta