[CVE-2026-47857] In Reactor Core, applications that use the Flux.windowTimeou

CVE-2026-47857 | CVSS: 5.9 | 严重级别: MEDIUM

In Reactor Core, applications that use the Flux.windowTimeout operator with fairBackpressure enabled are vulnerable to a Denial of Service (DoS) condition.
Reactor Core 3.8.0 – 3.8.6
Reactor Core 3.5.0 – 3.7.19
Reactor Core 3.4.41 and earlier

参考链接:
https://spring.io/security/cve-2026-47857

📌 数据来源: NVD 官方

⚠️ 合规声明: 本文内容仅用于网络安全合规学习、科研与授权测试用途。严禁用于任何未授权行为,违者自行承担全部法律责任。
滚动至顶部