Every CVE whose affected-product data names Apache Neethi, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (11)
CVE-2026-42402 — CVSS 7.5 (high): Apache Neethi is vulnerable to a Denial of Service attack through algorithmic complexity in policy normalization. Specially crafted…
CVE-2026-42403 — CVSS 7.5 (high): Apache Neethi does not properly detect circular references in policy definitions. When a WS-Policy document contains circular policy…
CVE-2026-91865 — CVSS 7.5 (high): A small WS-Policy document using repeated policy references can force Neethi to re-expand the same references exponentially during…
CVE-2026-91866 — CVSS 7.5 (high): A specially crafted pair of WS-Policy documents can force Neethi's policy-intersection to do exponential amounts of work, pinning the CPU…
CVE-2026-66142 — CVSS 7.5 (high): Apache Neethi is vulnerable to uncontrolled recursion when parsing policies that lack policy Ids or with deeply nested structures, which…
CVE-2026-66143 — CVSS 7.5 (high): It is possible to bypass the maximum number of normalized policy alternatives that was introduced in Apache Neethi 3.2.2 via certain…
CVE-2026-66144 — CVSS 7.5 (high): Although remote policy references are not retrieved during policy normalization, if they are manually retrieved via the API it can cause a…
CVE-2026-91863 — CVSS 7.5 (high): A specially crafted WS-Policy document with deeply nested policy elements can bypass Neethi's nesting-depth limit and exhaust the thread…
CVE-2026-91864 — CVSS 7.5 (high): A specially crafted WS-Policy document can pack unlimited content inside a policy assertion, which Neethi copies into memory without…
CVE-2026-42404 — CVSS 6.5 (medium): Apache Neethi does not impose any restrictions on URIs when manually fetching remote policy references through the PolicyReference API…
CVE-2026-91867 — CVSS 4.3 (medium): When Neethi fetches a remote policy reference, it only limits the time per read, not the whole transfer, so a server that trickles bytes…