AUGUST 25, 2026
Live Feed
Back to database
Case File

CVE-2026-57242

HIGH · CVSS 7.8 EPSS 0.12%

Source: NVD + CISA KEV + EPSS · Published 2026-07-08 · Last synced 2026-08-07

CyberRota Analysis

AI-Generated

The vulnerability affects Java applications that handle PDF forms with JavaScript modifications, where inadequate lifecycle management and null value validation result in the continuous dereferencing of invalid objects. This can lead to application crashes, potentially disrupting service availability. Organizations utilizing Java for PDF processing should prioritize addressing this issue to mitigate the risk of operational downtime.

CVE
CVE-2026-57242
Severity
HIGH
CVSS
7.8
EPSS
0.12%
Java

Original NVD Description

The application opens the PDF, and JavaScript modifies the form. However, the related objects on the page lack complete lifecycle management and null value validation; when the page state changes, the application continuously dereferences invalid objects, eventually leading to a crash.

Related CVEs

Other vulnerabilities affecting the same vendor(s)