THREAT OPS › Threat News › CVE-2026-41871: Apache Nutch: Unauthenticated reflection-based job execution in Nutch Server (Nutch REST API)
CVE-2026-41871: Apache Nutch: Unauthenticated reflection-based job execution in Nutch Server (Nutch REST API)
<p>Posted by Sebastian Nagel on Sep 08</p>Severity: important <br /> <br /> Affected versions:<br /> <br /> - Apache Nutch 1.10 through 1.22<br /> <br /> Description:<br /> <br /> Missing Authorization, Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection') vulnerability <br /> in Apache Nutch Server (Nutch REST API).<br /> <br /> This issue affects Apache Nu
Indicators of compromise
- CVE-2026-41871cve
Original source: https://seclists.org/oss-sec/2026/q3/669