CVE-2026-12143 – Bamboo Data Center and Server

CVSS 7.5 IMPORTANT Zero Day – Immediate Deployment

“Dependency flaws can weaken request integrity, exhaust services, bypass path controls, and corrupt application memory.”

Bamboo Data Center and Server is affected by five dependency vulnerabilities. CVE-2026-41907 has a CVSS score of 8.1, High severity and involves unsafe buffer handling. CVE-2026-12143, CVE-2026-46625, and CVE-2026-56819 each have a CVSS score of 7.5, High severity and can enable multipart request manipulation, cookie attribute manipulation, or HTTP/2 memory exhaustion. Public proof-of-concept information is available for these four vulnerabilities.

CVE-2026-6321 has a CVSS score of 7.5, High severity and can allow path-based security controls to be bypassed through improper URI normalization.

Key Details

Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
CWE Classification
CWE-93
Patch this CVE on all your endpoints in under 5 minutes. First 200 endpoints are free forever, scale as needed.