CyberSec.Space Logo
返回 CVE 浏览器

CVE-2026-50633

HIGH
8.1
CVSS Severity Score
EPSS Score0.1070%
EPSS Percentile20.02th
Published2026年6月12日
Last Modified2026年6月12日

Vulnerability Description

A JNDI Injection vulnerability has been discovered in Apache CXF's JCA integration module, which can allow for code execution, if an attacker is able to manipulate the JCA deployment descriptor (ra.xml) or runtime activation parameters. Users are recommended to upgrade to versions 4.2.2 or 4.1.7, which fixes this issue.

Affected Platforms (CPE)

No CPE configurations currently published for this record.

References & Advisories

相关漏洞威胁