logo

Apache MINA Fixes Critical RCE Vulnerabilities

ID: 235f6822-0820-584b-87b2-e1e7e789e19a

STIX ID: report--235f6822-0820-584b-87b2-e1e7e789e19a

Feed Name: securityonline.info

Threat Score
80/100

Date Published: 2026-05-04

Date Updated: 2026-05-05

Author: Ddos

...
...

Apache MINA issued an emergency security release addressing two critical RCE vulnerabilities (CVE-2026-42778 and CVE-2026-42779, CVSS 9.8) that allow unauthenticated object deserialization and class-resolution bypasses; affected versions include 2.1.0–2.1.11 and 2.2.0–2.2.6, and users are urged to upgrade immediately to 2.1.12 or 2.2.7.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.