nfsd4_revoke_states of the component nfsd. Such manipulation leads to state issue.This vulnerability is documented as CVE-2026-22989. The attack requires being on the local network. There is not any exploit available.
You should upgrade the affected component.