Ion Java Amazon Ion Java

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Amazon Ion Java.

By the Year

In 2026 there have been 1 vulnerability in Amazon Ion Java with an average score of 8.7 out of ten.

Year Vulnerabilities Average Score
2026 1 8.70

It may take a day or so for new Ion Java vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Amazon Ion Java Security Vulnerabilities

Amazon ion-java < 1.12.1: GZIP Decompression DoS via Unchecked Compression
CVE-2026-85786 8.7 - High - September 04, 2026

Improper handling of highly compressed data in Amazon ion-java before 1.12.1 might allow remote attackers to cause a denial of service via a crafted compressed Ion document that expands to an arbitrarily large size upon decompression due to insufficient coverage of the GZIP auto-decompression opt-out introduced for CVE-2026-75936. To remediate this issue, users should upgrade to version 1.12.1.

Data Amplification

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Amazon Ion Java or by Amazon? Click the Watch button to subscribe.

Amazon
Vendor

subscribe