CVE-2026-71887 | Legion of the Bouncy Castle BC-JAVA up to 1.85 High-Level OpenPGP API OpenPGPSignature.OpenPGPDocumentSignature.isValid certificate validation
A vulnerability described as problematic has been identified in Legion of the Bouncy Castle BC-JAVA up to 1.85. This impacts the function OpenPGPSignature.OpenPGPDocumentSignature.isValid of the component High-Level OpenPGP API. The manipulation results in improper certificate validation.
This vulnerability is cataloged as CVE-2026-71887. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More