CVE-2025-48924
11.07.2025, 15:15
Uncontrolled Recursion vulnerability in Apache Commons Lang. This issue affects Apache Commons Lang: Starting withcommons-lang:commons-lang2.0 to 2.6, and, from org.apache.commons:commons-lang3 3.0 before3.18.0. The methods ClassUtils.getClass(...) can throwStackOverflowError on very long inputs. Because an Error is usually not handled by applications and libraries, a StackOverflowError couldcause an application to stop. Users are recommended to upgrade to version 3.18.0, which fixes the issue.Enginsight
Vendor | Product | Version |
---|---|---|
apache | commons_lang | 2.0 ≤ 𝑥 < 2.6 |
apache | commons_lang | 3.0 ≤ 𝑥 < 3.18.0 |
𝑥
= Vulnerable software versions

Debian Releases
Common Weakness Enumeration