How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Imperva Customers Protected Against CVE-2026-16723: Critical FastJson 1.x Zero-Day RCE

calendar_today July 24, 2026 person Gabi Sharadin domain imperva

TL;DR: A critical remote code execution vulnerability has been disclosed in FastJson, a widely used JSON processing library for Java. The vulnerability, assigned CVE-2026-16723 with a CVSS score of 9.0 (Critical), affects FastJson versions 1.2.68 through 1.2.83 under specific Spring Boot deployment conditions and can be exploited using malicious JSON without authentication, enabling AutoType, or relying on third-party gadget classes. Imperva customers are protected against exploitation attempts […] The post Imperva Customers Protected Against CVE-2026-16723: Critical FastJson 1.x Zero-Day RCE

open_in_new Read original post