CVE-2026-59644
published 2026-08-03CVE-2026-59644: In Bouncy Castle for Java before 1.85, MLS hash-ratchet honours arbitrary 32-bit generation counter from sender.
PriorityP346high8.7CVSS 4.0
AVNACLATNPRNUINVCNVINVAHSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUAmber
EPSS
0.28%
19.6th percentile
In Bouncy Castle for Java before 1.85, MLS hash-ratchet honours arbitrary 32-bit generation counter from sender.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| legion_of_the_bouncy_castle_inc | bc-java | >= 1.73 < 1.85 | 1.85 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Legion of the Bouncy Castle BC-JAVA up to 1.84 MLS hash-ratchet input validation
vuldb·2026-08-03·CVSS 8.7
CVE-2026-59644 [HIGH] Legion of the Bouncy Castle BC-JAVA up to 1.84 MLS hash-ratchet input validation
A vulnerability has been found in Legion of the Bouncy Castle BC-JAVA up to 1.84 and classified as critical. This affects an unknown function of the component MLS hash-ratchet. Performing a manipulation results in improper input validation.
This vulnerability is reported as CVE-2026-59644. The attack is possible to be carried out remotely. No exploit exists.
The affected component should be upgraded.
GHSA
In Bouncy Castle for Java before 1.85, MLS hash-ratchet honours arbitrary 32-bit generation counter from sender.
ghsa_unreviewed·2026-08-03
CVE-2026-59644 [HIGH] CWE-834 In Bouncy Castle for Java before 1.85, MLS hash-ratchet honours arbitrary 32-bit generation counter from sender.
In Bouncy Castle for Java before 1.85, MLS hash-ratchet honours arbitrary 32-bit generation counter from sender.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-08-03
Published