CVE-2026-28666
NONE—CVSS v3
—CVSS v2
—
EPSS (exploit probability)
—CWE
Description
In multiple functions of LocalImageResolver.java, there is a possible Remote Persistent Denial of Service due to a DNG image rendering check bypass. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Affected routers (0)
No routers currently mapped to this CVE in our database.