Improper input validation in Oracle Communications Cloud Native Core Policy - CVE-2026-21452
Published: April 22, 2026
Oracle Communications Cloud Native Core Policy
Detailed vulnerability description
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to improper input validation within the Configuration (MessagePack) component in Oracle Communications Cloud Native Core Policy. A remote non-authenticated attacker can exploit this vulnerability to perform a denial of service (DoS) attack.