Apache MINA Fixes Critical RCE Vulnerabilities
ID: 235f6822-0820-584b-87b2-e1e7e789e19a
STIX ID: report--235f6822-0820-584b-87b2-e1e7e789e19a
Feed Name: securityonline.info
Threat Score
Apache MINA issued an emergency security release addressing two critical RCE vulnerabilities (CVE-2026-42778 and CVE-2026-42779, CVSS 9.8) that allow unauthenticated object deserialization and class-resolution bypasses; affected versions include 2.1.0–2.1.11 and 2.2.0–2.2.6, and users are urged to upgrade immediately to 2.1.12 or 2.2.7.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
