CVE-2026-75936 | Amazon ion-java up to 1.11.x GZIP auto-decompression handler withMaximumBufferSize resource consumption

SecurityVulns

A vulnerability identified as problematic has been detected in Amazon ion-java up to 1.11.x. Affected by this issue is the function withMaximumBufferSize of the component GZIP auto-decompression handler. Performing a manipulation results in resource consumption.

This vulnerability was named CVE-2026-75936. The attack may be initiated remotely. There is no available exploit.

You should upgrade the affected component.VulDB Recent EntriesRead More