
Apache Neethi CVE-2026-42402: Policy Normalization Resource Allocation DoS https://www.openwall.com/lists/oss-security/2026/05/01/6 CVE-2026-42403: Circular Policy Reference Infinite Loop https://www.openwall.com/lists/oss-security/2026/05/01/7 CVE-2026-42404: Unrestricted HTTP Redirect Following in Policy References https://www.openwall.com/lists/oss-security/2026/05/01/8
Post summary
The excerpt announces three new CVEs affecting Apache Neethi, providing brief technical descriptions but no evidence of exploitation, PoC, or patch information.


