LOWVulnerability

CVE-2026-59642

In Bouncy Castle for Java before 1.85, CMS AuthenticatedData content not bound to MAC when authAttrs present. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpkix-fips 1.0.12 (1.0.X series), 2.0.12 (2.0.X series) and 2.1.12 (2.1.X series).

Properties

cve_id
CVE-2026-59642
published_at
2026-08-03T01:16:44.203
last_modified
2026-08-04T14:50:12.360

Related Entities (2)

DESCRIBED_BY (1)

[Source]NVD

HAS_WEAKNESS (1)

[Weakness]Improper Validation of Integrity Check Value

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-59642 — Ninja Signal Threat Intelligence | Ninja Signal