Security News Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched Available TheHackerNews Daniel Bender 25 Jul 2026 Share Fastjson 1.x flaw CVE-2026-16723 can trigger unauthenticated RCE in Spring Boot fat-JAR apps, with attacks reported and no patched 1.x fix available.