CVE-2026-47843

Updated on 26 Aug 2026

Severity

Awaiting Analysis

Details

CVSS vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N

Overview

About vulnerability

In specific scenarios involving multiple clients with different DNS resolver configurations, Reactor Netty may incorrectly reuse a previously configured DNS resolver. In order for this to happen, the application must dynamically create multiple clients (such as HttpClient or TcpClient) that rely on different custom configuration. This can lead to traffic being routed to unintended destinations.

Details

Affected packages:
Spring Integration @ 5.5.19 (+2676 more)