CLEANSTART-2026-GA88793

See a problem?
Import Source
https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-GA88793.json
JSON Data
https://api.osv.dev/v1/vulns/CLEANSTART-2026-GA88793
Upstream
Published
2026-09-19T00:40:30Z
Modified
2026-09-19T01:00:06Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
Although remote policy references are not retrieved during policy normalization, if they are manually retrieved via the API it can cause a denial of service attack if a huge policy is retrieved
Details

Security vulnerability affects the wildfly package. Although remote policy references are not retrieved during policy normalization, if they are manually retrieved via the API it can cause a denial of service attack if a huge policy is retrieved.

References

Affected packages

CleanStart / wildfly

Package

Name
wildfly

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
39.0.1-r9

Database specific

source
"https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-GA88793.json"