CVE-2026-47843

In specific scenarios involving multiple clients with different DNS resolver configurations, Reactor Netty may incorrectly reuse a previously configured DNS resolver. Reactor Netty 1.3.0 - 1.3.6 Reactor Netty 1.1.0 - 1.2.18 Reactor Netty 1.0.52 and earlier

  • Published Aug 26, 2026
  • CVSS 3.7 low
  • 0.3% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-47843 at the National Vulnerability Database