Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-47857

In Reactor Core, applications that use the Flux.windowTimeout operator with fairBackpressure enabled are vulnerable to a Denial of Service (DoS) condition. Reactor Core 3.8.0 - 3.8.6 Reactor Core 3.5.0 - 3.7.19 Reactor Core 3.4.41 and earlier
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 12.7%
CVSS Severity
CVSS v3 Score 5.9
Products affected by CVE-2026-47857


Contact Us

Shodan ® - All rights reserved