Apache EPSS Rated Vulnerabilities
Apache vulnerabilities from the past 365 days which have an EPSS rating.
Vulnerability Published:
🗓️ Published
- Anytime
Sort By:
🗓️ Published Date
- Descending
Code Injection Vulnerability in Apache ActiveMQ Broker Up to Version 6.2.2
CVE-2026-34197ApacheApache ActiveMQ Broker📈💰👾🟡EPSS 97%🦅📰8.8HIGHMissing Encryption of Sensitive Data Vulnerability in Apache Tomcat
CVE-2026-34486ApacheApache Tomcat📈💰👾🟡EPSS 82%🦅📰7.5HIGHXML External Entity Injection in Apache Tika Products
CVE-2025-66516ApacheApache Tika Core👾🟡EPSS 78%📰10CRITICALRelative Path Traversal Vulnerability in Apache Tomcat by Apache
CVE-2025-55752ApacheApache Tomcat🥇📈👾🟡EPSS 66%📰7.5HIGHDouble Free and Remote Code Execution Vulnerability in Apache HTTP Server
CVE-2026-23918ApacheApache Http Server📈👾🟡EPSS 49%📰8.8HIGHDeserialization Vulnerability in Pyfory and Legacy Pyfury Software
CVE-2025-61622ApacheApache Fory👾🟡EPSS 41%9.8CRITICALMissing XML Validation Vulnerability in Apache Struts by Apache
CVE-2025-68493ApacheApache Struts👾🟡EPSS 37%📰8.1HIGHMemory Allocation Vulnerability in Apache HTTP Server by Apache
CVE-2026-49975ApacheApache Http Server📈💰👾🟡EPSS 27%📰7.5HIGHRemote Command Injection in Apache bRPC Heap Profiler Service
CVE-2025-60021ApacheApache Brpc👾🟡EPSS 24%9.8CRITICALRemote Code Execution in Apache Syncope Due to Groovy Code Injection Vulnerability
CVE-2025-57738ApacheApache SyncopeEPSS 23%7.2HIGHRemote Code Execution Vulnerability in Apache OFBiz by Apache
CVE-2026-45434ApacheApache OfbizEPSS 22%9.8CRITICALFiles Accessible to External Parties in Apache Kylin by Apache
CVE-2025-61734ApacheApache KylinEPSS 18%7.5HIGHUser ID Creation Vulnerability in Apache StreamPipes by Apache
CVE-2025-47411ApacheApache StreampipesEPSS 15%8.1HIGHJava Deserialization Vulnerability in Apache Causeway
CVE-2025-64408ApacheApache CausewayEPSS 10%6.3MEDIUMImproper Control Sequence Neutralization in Apache Tomcat by Apache Software Foundation
CVE-2025-55754ApacheApache TomcatEPSS 10%9.6CRITICALMissing Authentication in Apache Artemis and ActiveMQ Messaging Services
CVE-2026-27446ApacheApache ArtemisEPSS 10%9.3CRITICALUntrusted Java Deserialization Vulnerability in Apache OpenNLP
CVE-2026-43825ApacheApache Opennlp :: Core...7.3HIGHPadding Oracle Vulnerability in Apache Tomcat by the Apache Software Foundation
CVE-2026-29146ApacheApache Tomcat7.5HIGHRemote Code Execution Vulnerability in Apache Camel's CoAP Component
CVE-2026-33453ApacheApache Camel👾🟡10CRITICALCode Execution Vulnerability in Apache Spark History Server
CVE-2025-54920ApacheApache Spark8.8HIGHCode Injection Vulnerability in Apache ActiveMQ by Apache
CVE-2026-40466ApacheApache ActiveMQ Broker8.8HIGHImproper Neutralization of HTML Tags in Apache Tomcat Web Application
CVE-2026-50229ApacheApache Tomcat6.1MEDIUMCommand Injection Vulnerability in Apache Continuum by Apache
CVE-2016-15057ApacheApache Continuum9.9CRITICALMissing Authentication Step in Apache Tomcat Affects Multiple Versions
CVE-2026-55957ApacheApache Tomcat👾🟡7.3HIGHCommand Injection Vulnerability in Apache Ranger Software by Apache
CVE-2026-28672ApacheApache Ranger9.8CRITICAL