CVE-2026-41860 | Cloud Foundry BOSH up to 282.1.8 create_async_endpoint inadequate encryption (EUVD-2026-34192 / CNNVD-202606-1373)
A vulnerability was found in Cloud Foundry BOSH up to 282.1.8. It has been declared as problematic. This impacts the function create_async_endpoint. Such manipulation leads to inadequate encryption strength.
This vulnerability is traded as CVE-2026-41860. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.