← Back to search

CVE-2026-68074

7.5 HIGH

Published 2026-08-05 · Updated 2026-08-07

AI risk analysis

Summary
The flaw allows a pre-authentication attacker to cause resource exhaustion by leveraging unbounded symbol value caching, leading to denial of service.
Exploitability
Exploitation requires access to the network and knowledge of the vulnerability; no authentication is needed beforehand.
Blast radius
If exploited, it could result in service disruption for affected systems, impacting availability and potentially requiring system restarts or upgrades.
Prioritized remediation
Upgrade Apache Qpid Broker-J to version 10.1.0 immediately to address the issue.
dosnetworkcache

Analysis generated locally by qwen2.5:7b-instruct (no data left the box). AI-assisted — verify against primary sources before acting.

NVD description

A pre-authentication attacker could leverage unbounded symbol value caching to cause resource exhaustion leading to denial of service. This issue affects Apache Qpid Broker-J: through 10.0.1. Users are recommended to upgrade to version 10.1.0, which fixes the issue.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Weaknesses

CWE-770

Vendors

apache

Products

qpid broker-j

All references

Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.