CVE-2026-85515 - OpenPGP message truncation not reported, bypassing the SEIPDv1 integrity check
CVE ID :CVE-2026-85515 Published : Oct. 3, 2026, 8:05 a.m. | 1 hour, 19 minutes ago Description :In Bouncy Castle for Java before 1.86, a truncated OpenPGP encrypted message was accepted with no error reported, and on the SEIPD version 1 path with no integrity check performed at all. RFC 9580...