Apache EPSS Rated Vulnerabilities
Apache vulnerabilities from the past 365 days which have an EPSS rating.
Vulnerability Published:
🗓️ Published
- Anytime
Sort By:
🗓️ Published Date
- Descending
XML External Entity Injection in Apache Tika Products
CVE-2025-66516ApacheApache Tika Core👾🟡EPSS 88%📰10CRITICALRelative Path Traversal Vulnerability in Apache Tomcat by Apache
CVE-2025-55752ApacheApache Tomcat🥇📈👾🟡EPSS 64%📰7.5HIGHDouble Free and Remote Code Execution Vulnerability in Apache HTTP Server
CVE-2026-23918ApacheApache Http Server📈👾🟡EPSS 49%📰8.8HIGHMissing XML Validation Vulnerability in Apache Struts by Apache
CVE-2025-68493ApacheApache Struts👾🟡EPSS 45%📰8.1HIGHDeserialization Vulnerability in Pyfory and Legacy Pyfury Software
CVE-2025-61622ApacheApache Fory👾🟡EPSS 43%9.8CRITICALRemote Command Injection in Apache bRPC Heap Profiler Service
CVE-2025-60021ApacheApache Brpc👾🟡EPSS 25%9.8CRITICALRemote Code Execution in Apache Syncope Due to Groovy Code Injection Vulnerability
CVE-2025-57738ApacheApache SyncopeEPSS 23%7.2HIGHFiles Accessible to External Parties in Apache Kylin by Apache
CVE-2025-61734ApacheApache KylinEPSS 19%7.5HIGHCode Injection Vulnerability in Apache ActiveMQ Broker Up to Version 6.2.2
CVE-2026-34197ApacheApache ActiveMQ Broker📈💰👾🟡EPSS 15%🦅📰8.8HIGHUser ID Creation Vulnerability in Apache StreamPipes by Apache
CVE-2025-47411ApacheApache StreampipesEPSS 15%8.1HIGHUntrusted Java Deserialization Vulnerability in Apache OpenNLP
CVE-2026-43825ApacheApache Opennlp :: Core...EPSS 13%7.3HIGHJava Deserialization Vulnerability in Apache Causeway
CVE-2025-64408ApacheApache CausewayEPSS 10%6.3MEDIUMImproper Control Sequence Neutralization in Apache Tomcat by Apache Software Foundation
CVE-2025-55754ApacheApache TomcatEPSS 10%9.6CRITICALRemote Code Execution Vulnerability in Apache Camel's CoAP Component
CVE-2026-33453ApacheApache Camel👾🟡10CRITICALMissing Encryption of Sensitive Data Vulnerability in Apache Tomcat
CVE-2026-34486ApacheApache Tomcat📈💰👾🟡🦅📰7.5HIGHCode Execution Vulnerability in Apache Spark History Server
CVE-2025-54920ApacheApache Spark8.8HIGHMemory Allocation Vulnerability in Apache HTTP Server by Apache
CVE-2026-49975ApacheApache Http Server📈💰👾🟡📰7.5HIGHCommand Injection Vulnerability in Apache Continuum by Apache
CVE-2016-15057ApacheApache Continuum9.9CRITICALCode Injection Vulnerability in Apache ActiveMQ by Apache
CVE-2026-40466ApacheApache ActiveMQ Broker8.8HIGHImproper Neutralization of HTML Tags in Apache Tomcat Web Application
CVE-2026-50229ApacheApache Tomcat6.1MEDIUMSQL Injection Vulnerability in Apache Fineract's Report Execution API
CVE-2026-35152ApacheApache Fineract8.8HIGHCommand Injection Vulnerability in Apache CloudStack Affecting System VMs and Virtual Routers
CVE-2026-61400ApacheApache Cloudstack8.8HIGHPadding Oracle Vulnerability in Apache Tomcat by the Apache Software Foundation
CVE-2026-29146ApacheApache Tomcat7.5HIGHMissing Authentication Step in Apache Tomcat Affects Multiple Versions
CVE-2026-55957ApacheApache Tomcat👾🟡7.3HIGHBasic Authentication Flaw in Apache Solr Affects User Security
CVE-2026-44825ApacheApache Solr👾🟡8.1HIGH