Skip to content
Vulnerability intelligence

CVE-2026-16723 — Security Advisory

CVE-2026-16723 lets attackers run code without authentication in any Java app using Fastjson 1.x — and the library has no patch to ship.

2026