Skip to content

Multiple Flaws in Enterprise Java Platforms Allow Attackers to Execute Remote Code

Cybersecuritynews Abinaya August 7, 2026

Enterprise Java platforms remain attractive targets because middleware often exposes paths developers assumed were internal. New research presented for Black Hat 2026 describes 12 flaws across products, including a sandbox escape and four pre-authentication issues. The serious findings are two remote code execution chains affecting Bonita BPM and Apache OFBiz. Both chains begin before login […]