Menu Search

CVE-2026-67553: Apache Qpid Proton Dotnet: Incoming session flow control window can be exceeded

Severity

important

Affected versions

Apache Qpid Proton Dotnet (org.apache.qpid) through 1.0.0

Description

An authenticated attacker could exceed the session flow control incoming window potentially leading to denial of service.

This issue affects Apache Qpid Proton-Dotnet: through 1.0.0.

Users are recommended to upgrade to version 1.1.0, which fixes the issue.