CVE-2026-71883 - Native AES packet cipher returns the raw AES key on an alias
CVE ID :CVE-2026-71883 Published : Oct. 3, 2026, 8:38 a.m. | 46 minutes ago Description :In Bouncy Castle for Java LTS before 2.73.13, the one-shot native packet ciphers for AES-CBC, CCM, CFB, CTR, GCM and GCM-SIV released the caller's key, IV and additional authenticated data arrays with...