CVE-2026-66756
Critical · CVSS 9.8- CVSS
- 9.8
- nvd
- EPSS
- 0.32%
- 24th pct
- KEV
- No
- Class
- other
- CWE-424
Description
Improper Protection of Alternate Path vulnerability in Apache Tika. This issue affects Apache Tika: from 4.0.0-alpha-1 before 4.0.0-beta-1. Users are recommended to upgrade to version 4.0.0-beta-1, which fixes the issue.
References
Status: profiled · ingested 2026-08-10T18:00:50.000Z