Skip to content

chore(deps): bump org.bouncycastle:bcprov-jdk18on from 1.83 to 1.84 - #840

Open
Meenu-Mariya wants to merge 1 commit into
Aiven-Open:mainfrom
Meenu-Mariya:bump-bouncycastle-1.84
Open

chore(deps): bump org.bouncycastle:bcprov-jdk18on from 1.83 to 1.84#840
Meenu-Mariya wants to merge 1 commit into
Aiven-Open:mainfrom
Meenu-Mariya:bump-bouncycastle-1.84

Conversation

@Meenu-Mariya

Copy link
Copy Markdown

About this change - What it does
Bumps org.bouncycastle:bcprov-jdk18on from 1.83 to 1.84.

CVE-2026-0636 is an LDAP injection vulnerability in BouncyCastle's LDAPStoreHelper
(bcprov-jdk18on), affecting versions from 1.82 before 1.84. The fix version is 1.84.

CVE: CVE-2026-0636
Severity: Medium (CVSS 6.5)
Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-0636

@Meenu-Mariya
Meenu-Mariya requested a review from a team as a code owner August 27, 2026 06:20
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant