Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-45205

Опубликовано: 14 мая 2026
Источник: nvd
CVSS3: 5.3
EPSS Низкий

Описание

Uncontrolled Recursion vulnerability in Apache Commons.

When processing an untrusted configuration file, Commons Configuration will throw a StackOverflowError for YAML input with cycles. This issue affects Apache Commons: from 2.2 before 2.15.0.

Users are recommended to upgrade to version 2.15.0, which fixes the issue.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:apache:commons_configuration:*:*:*:*:*:*:*:*
Версия от 2.2 (включая) до 2.15.0 (исключая)

EPSS

Процентиль: 38%
0.00469
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-674

Связанные уязвимости

CVSS3: 5.3
ubuntu
3 месяца назад

Uncontrolled Recursion vulnerability in Apache Commons. When processing an untrusted configuration file, Commons Configuration will throw a StackOverflowError for YAML input with cycles. This issue affects Apache Commons: from 2.2 before 2.15.0. Users are recommended to upgrade to version 2.15.0, which fixes the issue.

CVSS3: 7.5
redhat
3 месяца назад

Uncontrolled Recursion vulnerability in Apache Commons. When processing an untrusted configuration file, Commons Configuration will throw a StackOverflowError for YAML input with cycles. This issue affects Apache Commons: from 2.2 before 2.15.0. Users are recommended to upgrade to version 2.15.0, which fixes the issue.

CVSS3: 5.3
debian
3 месяца назад

Uncontrolled Recursion vulnerability in Apache Commons. When processi ...

suse-cvrf
около 1 месяца назад

Security update for apache-commons-configuration2, apache-commons-text

CVSS3: 5.3
github
3 месяца назад

Apache Commons Configuration: StackOverflowError for YAML input with cycles

EPSS

Процентиль: 38%
0.00469
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-674