SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-47857

MEDIUM · CVSS 5.9 EPSS 0.22%

Source: NVD + CISA KEV + EPSS · Published 2026-08-27 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

Applications utilizing the Flux.windowTimeout operator with fairBackpressure enabled in Reactor Core versions 3.4.41 to 3.8.6 are susceptible to a Denial of Service (DoS) condition. This vulnerability can lead to application instability and unresponsiveness, impacting service availability. Developers and system administrators using affected versions should prioritize remediation to mitigate potential service disruptions.

CVE
CVE-2026-47857
Severity
MEDIUM
CVSS
5.9
EPSS
0.22%

Original NVD Description

In Reactor Core, applications that use the Flux.windowTimeout operator with fairBackpressure enabled are vulnerable to a Denial of Service (DoS) condition. Reactor Core 3.8.0 - 3.8.6 Reactor Core 3.5.0 - 3.7.19 Reactor Core 3.4.41 and earlier

Related CVEs

Other vulnerabilities affecting the same vendor(s)