Severity: 

Affected versions:

- Apache Tika (org.apache.tika:tika-server) 4.0.0-alpha-1 before 4.0.0-beta-1

Description:

Improper Protection of Alternate Path vulnerability in Apache Tika.

This issue affects Apache Tika: from 4.0.0-alpha-1 before 4.0.0-beta-1.

Users are recommended to upgrade to version 4.0.0-beta-1, which fixes the issue.

Credit:

George Chen discovered this issue and proposed fixes (finder)

References:

https://tika.apache.org/
https://www.cve.org/CVERecord?id=CVE-2026-66756

Reply via email to