CVE-2026-107826 | CorazaWAF Coraza up to 3.8.0 JSON Body Processor json.go readJSON stack-based overflow

SecurityVulns

A vulnerability classified as problematic has been found in CorazaWAF Coraza up to 3.8.0. Impacted is the function readJSON of the file internal/bodyprocessors/json.go of the component JSON Body Processor. This manipulation causes stack-based buffer overflow.

This vulnerability is handled as CVE-2026-107826. The attack can be initiated remotely. There is not any exploit available.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More