Security Advisory
CVE-2026-47857
5.9
MEDIUM
Vulnerability Description
In Reactor Core, applications that use the Flux.windowTimeout operator with fairBackpressure enabled are vulnerable to a Denial of Service (DoS) condition.
Reactor Core 3.8.0 - 3.8.6
Reactor Core 3.5.0 - 3.7.19
Reactor Core 3.4.41 and earlier
Published Date
August 27, 2026
Official Source
NIST NVD Advisory