A vulnerability has been found in Apache Fory up to 1.3.x and classified as critical. Affected by this vulnerability is the function
readAlignedVarUint of the component sun.misc.Unsafe. The manipulation leads to out-of-bounds read.
This vulnerability is documented as CVE-2026-64609. The attack can be initiated remotely. There is not any exploit available.