Vulnerability Description
A remote code execution (RCE) vulnerability exists in fastjson 1.2.68 through 1.2.83. This vulnerability is exploitable under fastjson's stock default configuration — no AutoType enablement required, no classpath gadget required.
CVSS Score
CRITICAL
Related Weaknesses (CWE)
References
FAQ
What is CVE-2026-16723?
CVE-2026-16723 is a vulnerability with a CVSS score of 9.0 (CRITICAL). A remote code execution (RCE) vulnerability exists in fastjson 1.2.68 through 1.2.83. This vulnerability is exploitable under fastjson's stock default configuration — no AutoType enablement required, ...
How severe is CVE-2026-16723?
CVE-2026-16723 has been rated CRITICAL with a CVSS base score of 9.0/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2026-16723?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.