PatchSiren

eProsima CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH eProsima CVE published 2026-09-09

CVE-2026-22591

A vulnerability in eprosima Fast DDS's SQL-based content filtering implementation allows remote participants to crash other Fast DDS participants by sending a crafted SEDP DATA submessage. This issue is fixed in versions 2.6.12, 2.14.6, 3.2.4, and 3.4.3. The vulnerability can be exploited by sending a deeply nested filter expression, which can cause a denial-of-service attack. Defenders should be aware of [truncated]