MEDIUMMaven

Apache Commons Configuration: StackOverflowError for YAML input with cycles

Apache Commons Configuration: StackOverflowError for YAML input with cycles

CVE-2026-45205Published 4 months agoUpdated 5 days agoSource: OSV

Affected packages

  • org.apache.commons:commons-configuration22.2 → 2.15.0

Exploit signal

Known exploited (CISA KEV)
No
EPSS score
EPSS percentile

EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.