CVE-2026-86319 | java-json-tools json-patch up to 1.13 Patch Operation JsonPatch.java JsonPatch.apply resource consumption (Issue 167)

SecurityVulns

A vulnerability was found in java-json-tools json-patch up to 1.13. It has been classified as problematic. Affected by this vulnerability is the function JsonPatch.apply of the file src/main/java/com/github/fge/jsonpatch/JsonPatch.java of the component Patch Operation Handler. The manipulation leads to resource consumption.

This vulnerability is traded as CVE-2026-86319. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.

The project was informed of the problem early through an issue report but has not responded yet.VulDB Recent EntriesRead More