HIGHMaven

Apache cxf-core: No restriction on attachment headers per message

Apache cxf-core: No restriction on attachment headers per message

CVE-2026-50645Published 2 months agoUpdated 1 week agoSource: OSV

Affected packages

  • org.apache.cxf:cxf-core4.2.0 → 4.2.2

Exploit signal

Known exploited (CISA KEV)
No
EPSS score
EPSS percentile

EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.

Apache cxf-core: No restriction on attachment headers per message | HackTribune