Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-66143

Опубликовано: 24 июл. 2026
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

It is possible to bypass the maximum number of normalized policy alternatives that was introduced in Apache Neethi 3.2.2 via certain crafted policies, which may lead to a denial of service attack via resource consumption. Users are recommended to upgrade to version 3.2.3, which fixes this issue.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:apache:neethi:3.2.2:*:*:*:*:*:*:*

EPSS

Процентиль: 41%
0.00513
Низкий

7.5 High

CVSS3

Дефекты

CWE-400

Связанные уязвимости

CVSS3: 7.5
github
14 дней назад

It is possible to bypass the maximum number of normalized policy alternatives that was introduced in Apache Neethi 3.2.2 via certain crafted policies, which may lead to a denial of service attack via resource consumption. Users are recommended to upgrade to version 3.2.3, which fixes this issue.

EPSS

Процентиль: 41%
0.00513
Низкий

7.5 High

CVSS3

Дефекты

CWE-400