Neethi
This hub aggregates every CVE we track for Neethi, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
11
CVEs tracked
0
Critical
9
High
0
In CISA KEV
Severity distribution
HIGH9MEDIUM2
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
3
0
3
0
5
2024-102026-09
Latest CVEs
The 11 most recently published vulnerabilities affecting Neethi.
- CVE-2026-91867Apache Neethi: Remote policy fetch lacks a total timeout, allowing a slow server to hang the request indefinitely4.3
- CVE-2026-91866Apache Neethi: Crafted policies cause unbounded work during intersection leading to denial of service7.5
- CVE-2026-91865Apache Neethi: Crafted policy references cause exponential expansion during normalization leading to denial of service7.5
- CVE-2026-91864Apache Neethi: Crafted WS-Policy documents bypass element/attribute limits causing memory exhaustion7.5
- CVE-2026-91863Apache Neethi: Uncontrolled recursion while parsing crafted WS-Policy documents allows denial of service7.5
- CVE-2026-66144Apache Neethi: Remote PolicyReference fetch lacks resource bounds7.5
- CVE-2026-66143Apache Neethi: Missing global alternative-output budget across policy computation paths7.5
- CVE-2026-66142Apache Neethi: Uncontrolled recursion in policy processing7.5
- CVE-2026-42404Apache Neethi: Unrestricted HTTP Redirect Following in Policy References6.5
- CVE-2026-42402Apache Neethi: Policy Normalization Unbounded Resource Allocation DoS7.5
- CVE-2026-42403Apache Neethi: Circular Policy Reference Infinite Loop7.5
Product normalization is registry-driven with AI assist and human review. How it works