Components
Vulnerabilities
Pricing
MCP
Docs
Sign up
Login
Find vulnerabilities. Fix fast with AI.
Search components by package, version, or CVE to get started.
Ecosystem
Package
Version
Vulnerabilities
CVE-2026-1301
CVE-2026-1301
In builds with PubSub and JSON enabled, a crafted JSON message can cause the decoder to write beyond a heap-allocated array before authentication, reliably crashing the process and corrupting memory.
Published Feb 9, 2026
https://www.cisa.gov/news-events/ics-advisories/icsa-26-036-03
CVSS Score
Medium
6.8
Components Impacted
Components Impacted
Security Details
Security Details
Sonatype Research
Sonatype Research
Ecosystem
Package
Version
No packages found
Try adjusting your search terms.
CVE-2026-1301 | Components Impacted | Sonatype Guide | Sonatype Guide