SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-16308

HIGH · CVSS 7.5 EPSS 0.31%

Source: NVD + CISA KEV + EPSS · Published 2026-07-30 · Last synced 2026-08-29

CyberRota Analysis

AI-Generated

IBM Enterprise Build of Quarkus versions 3.27.1 to 3.27.4.SP2 and 3.33.1 to 3.33.2.SP2 are vulnerable to a denial of service attack, where an attacker can exploit unbounded accumulation of multipart MIME part-header bytes. This vulnerability can lead to service disruptions, making it critical for organizations using these specific versions of Quarkus to prioritize immediate patching or mitigation strategies. Users of affected versions should assess their exposure and implement necessary security measures to protect their applications.

CVE
CVE-2026-16308
Severity
HIGH
CVSS
7.5
EPSS
0.31%

Original NVD Description

IBM Enterprise Build of Quarkus 3.27.1 through 3.27.4.SP2, and 3.33.1 through 3.33.2.SP2 Quarkus REST could allow a remote attacker to cause a denial of service due to unbounded accumulation of multipart MIME part-header bytes.