CVE-2026-12817 | Legion of the Bouncy Castle Bouncy Castle for Java prior 1.85/2.73.12/1.0.13/2.0.13/2.1.13 OpenPGP AEAD Decryption integrity check
A vulnerability was found in Legion of the Bouncy Castle Bouncy Castle for Java, Bouncy Castle for Java LTS and Bouncy Castle for Java FIPS. It has been declared as critical. This impacts an unknown function of the component OpenPGP AEAD Decryption. The manipulation results in missing support for integrity check.
This vulnerability is reported as CVE-2026-12817. The attack can be launched remotely. No exploit exists.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More