CVE-2026-66713 | Apache Axis2/Java up to 2.0.0 Tribes-based Clustering deserialization
A vulnerability was found in Apache Axis2 and Java up to 2.0.0. It has been rated as critical. This impacts the function org.apache.axis2.clustering.tribes.Axis2ChannelListener#messageReceived of the component Tribes-based Clustering. This manipulation causes deserialization.
This vulnerability is tracked as CVE-2026-66713. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is advised.VulDB Recent EntriesRead More