CVE-2026-6321 – Bamboo Data Center and Server
CVSS 7.5
IMPORTANT
Zero Day – Immediate Deployment
“Dependency flaws can weaken request integrity, exhaust services, bypass path controls, and corrupt application memory.”
Bamboo Data Center and Server is affected by five dependency vulnerabilities. CVE-2026-41907 has a CVSS score of 8.1, High severity and involves unsafe buffer handling. CVE-2026-12143, CVE-2026-46625, and CVE-2026-56819 each have a CVSS score of 7.5, High severity and can enable multipart request manipulation, cookie attribute manipulation, or HTTP/2 memory exhaustion. Public proof-of-concept information is available for these four vulnerabilities.
CVE-2026-6321 has a CVSS score of 7.5, High severity and can allow path-based security controls to be bypassed through improper URI normalization.
Key Details
- Affected Product
- Openjsf Fast-uri
- Attack Vector
- Network
- Attack Complexity
- Low
- Privileges Required
- None
- User Interaction
- None
- CWE Classification
- CWE-22
Patch this CVE on all your endpoints in under 5 minutes.
First 200 endpoints are free forever, scale as needed.