PatchSiren

PatchSiren cyber security CVE debrief

CVE-2026-45291 CloudburstMC CVE debrief

A vulnerability in Cloudburst Network versions prior to `1.0.0.CR3-20260418.124334-32` allows an attacker to exploit a bug in Network to close the parent netty channel, rendering it inoperable. This issue has a CVSS score of 7.5 and is classified as HIGH severity. All consumers of the library should upgrade to at least version `1.0.0.CR3-20260418.124334-32`.

Vendor
CloudburstMC
Product
Network
CVSS
HIGH 7.5
CISA KEV
Not listed in stored evidence
Original CVE published
2026-06-05
Original CVE updated
2026-06-05
Advisory published
2026-06-05
Advisory updated
2026-06-05

Who should care

Users of Cloudburst Network versions prior to `1.0.0.CR3-20260418.124334-32` should be aware of this vulnerability and take action to upgrade to a fixed version.

Technical summary

The vulnerability is caused by a bug in the Cloudburst Network library. An attacker can exploit this bug to close the parent netty channel, rendering it inoperable. The CVSS vector for this vulnerability is CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H.

Defensive priority

HIGH

Recommended defensive actions

  • Upgrade to at least version `1.0.0.CR3-20260418.124334-32` of the Cloudburst Network library.

Evidence notes

The CVE record for this vulnerability can be found at [cve-org]. The NVD detail for this vulnerability can be found at [nvd]. The source item URL for this vulnerability can be found at [source-item]. The source reference for this vulnerability can be found at [ref-4].

Official resources

CVE-2026-45291 was published on 2026-06-05T18:17:26.797Z and modified on 2026-06-05T19:02:13.790Z.