CVE-2026-71886 | Legion of the Bouncy Castle up to 1.85 High-Level OpenPGP Certificate API privileges management
A vulnerability has been found in Legion of the Bouncy Castle Bouncy Castle up to 1.85 and classified as critical. This vulnerability affects the function OpenPGPCertificate.getCertificationBy/OpenPGPCertificate.getDelegationBy of the component High-Level OpenPGP Certificate API. The manipulation leads to improper privilege management.
This vulnerability is traded as CVE-2026-71886. It is possible to initiate the attack remotely. There is no exploit available.
The affected component should be upgraded.VulDB Recent EntriesRead More