๐Ÿ” CVE Alert

CVE-2026-66275

UNKNOWN 0.0

Apache Qpid Proton-J: Incoming session flow control window can be exceeded

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

An authenticated attacker could exceed the session flow control incoming window potentially leading to denial of service. This issue affects Apache Qpid Proton-J: through 0.34.1. Users are recommended to upgrade to version 0.35.0, which fixes the issue.

CWE CWE-770
Vendor apache software foundation
Product apache qpid proton-j
Published Aug 5, 2026
Last Updated Aug 5, 2026
Stay Ahead of the Next One

Get instant alerts for apache software foundation apache qpid proton-j

Be the first to know when new unknown vulnerabilities affecting apache software foundation apache qpid proton-j are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Apache Software Foundation / Apache Qpid Proton-J
0 โ‰ค 0.34.1

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
lists.apache.org: https://lists.apache.org/thread/jds59nxrgcxtlx7xl0kvl5hqt07thxzt openwall.com: http://www.openwall.com/lists/oss-security/2026/08/04/11