CVE-2026-67211 | Apache OpenNLP up to 3.0.0-M5 opennlp-spellcheck extension SymSpellModelSerializer.create unigramCount/bigramCount allocation of resources

SecurityVulns

A vulnerability, which was classified as problematic, has been found in Apache OpenNLP up to 3.0.0-M5. This affects the function SymSpellModelSerializer.create of the component opennlp-spellcheck extension. This manipulation of the argument unigramCount/bigramCount causes allocation of resources.

This vulnerability is tracked as CVE-2026-67211. The attack is possible to be carried out remotely. No exploit exists.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More