CVE-2026-43896 | jqlang jq up to 1.8.1 jv_object_merge_recursive recursion (GHSA-mg96-6h3q-g846)
A vulnerability classified as problematic was found in jqlang jq up to 1.8.1. The affected element is the function jv_object_merge_recursive. Executing a manipulation can lead to uncontrolled recursion.
This vulnerability appears as CVE-2026-43896. The attack requires local access. There is no available exploit.