Apache Neethi Vulnerabilities

2 advisories affecting Apache Neethi

2

Total CVEs

0

Critical

2

High

CVE-2026-42402

May 1, 2026

High (7.5)

Apache Neethi is vulnerable to a Denial of Service attack through algorithmic complexity in policy normalization. Specially crafted WS-Policy documents can trigger an exponential Cartesian cross-produ...

Read Advisory

CVE-2026-42403

May 1, 2026

High (7.5)

Apache Neethi does not properly detect circular references in policy definitions. When a WS-Policy document contains circular policy references (where Policy A references Policy B which references Pol...

Read Advisory

Never Miss a Critical Alert

CVE advisories, breach reports, and threat intel — delivered daily to your inbox.