CVE-2026-71887 | Legion of the Bouncy Castle BC-JAVA up to 1.85 High-Level OpenPGP API OpenPGPSignature.OpenPGPDocumentSignature.isValid certificate validation

SecurityVulns

A vulnerability described as problematic has been identified in Legion of the Bouncy Castle BC-JAVA up to 1.85. This impacts the function OpenPGPSignature.OpenPGPDocumentSignature.isValid of the component High-Level OpenPGP API. The manipulation results in improper certificate validation.

This vulnerability is cataloged as CVE-2026-71887. The attack may be launched remotely. There is no exploit available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More