AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2021-30468

HIGH · CVSS 7.5 EPSS 7.02%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2021-06-16 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2021-30468
Severity
HIGH
CVSS
7.5
EPSS
7.02%
Apache

Original NVD Description

A vulnerability in the JsonMapObjectReaderWriter of Apache CXF allows an attacker to submit malformed JSON to a web service, which results in the thread getting stuck in an infinite loop, consuming CPU indefinitely. This issue affects Apache CXF versions prior to 3.4.4; Apache CXF versions prior to 3.3.11.