Product
apache neethi
3 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-42404
CVE-2026-42403
CVE-2026-42402
< 3.2.2
Apache Neethi does not impose any restrictions on URIs when manually fetching remote policy references through the PolicyReference
< 3.2.2
Apache Neethi does not properly detect circular references in policy definitions. When a WS-Policy document contains circular poli
< 3.2.2
Apache Neethi is vulnerable to a Denial of Service attack through algorithmic complexity in policy normalization. Specially crafte