CVE-2026-66276
Apache Qpid Proton-J: Unbounded disposition range handling can lead to denial of service
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
An authenticated attacker can craft a disposition frame with large or illegal ranges causing excessive CPU usage due to naive range handling, leading to denial of service. This issue affects Apache Qpid Proton-J: through 0.34.1. Users are recommended to upgrade to version 0.35.0, which fixes the issue.
| CWE | CWE-606 |
| Vendor | apache software foundation |
| Product | apache qpid proton-j |
| Published | Aug 5, 2026 |
| Last Updated | Aug 5, 2026 |
Stay Ahead of the Next One
Get instant alerts for apache software foundation apache qpid proton-j
Be the first to know when new unknown vulnerabilities affecting apache software foundation apache qpid proton-j are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Apache Software Foundation / Apache Qpid Proton-J
0 โค 0.34.1