Apache Latest High & Critical Vulnerabilities
Latest High & Critical vulnerabilities published by apache
Vulnerability Published:
🗓️ Published
- Anytime
Sort By:
🗓️ Published Date
- Descending
Privilege Escalation Vulnerability in Apache Cassandra
CVE-2025-23015ApacheApache Cassandra8.8HIGHPseudo-Random Number Generator Flaw in Apache Cocoon by Apache
CVE-2025-24783ApacheApache Cocoon7.5HIGHSSRF Vulnerability in Apache Ranger UI Version 2.4.0
CVE-2024-45479ApacheApache Ranger9.1CRITICALRemote Code Injection Vulnerability in Apache Ambari Metrics by Apache
CVE-2024-51941ApacheApache Ambari8.8HIGHXML External Entity Vulnerability in Apache Ambari and Oozie
CVE-2025-23195ApacheApache Ambari7.5HIGHCode Injection Vulnerability in Ambari Alert Definition by Apache
CVE-2025-23196ApacheApache Ambari8.8HIGHInsufficient Session Expiration in Apache Airflow Fab Provider
CVE-2024-45033ApacheApache Airflow Fab Pro...8.1HIGHDeserialization Vulnerability in Apache OpenMeetings by The Apache Software Foundation
CVE-2024-54676ApacheApache Openmeetings9.8CRITICALRemote Code Execution Risk in Apache MINA ObjectSerializationDecoder
CVE-2024-52046ApacheApache Mina🥇📈10CRITICALSQL Injection Vulnerability in Apache Traffic Control
CVE-2024-45387ApacheApache Traffic Control📈💰👾🟡📰9.9CRITICALRace Condition Vulnerability in Apache Tomcat Affects Multiple Versions
CVE-2024-56337ApacheApache Tomcat🥇📈👾🟡📰9.8CRITICALRace Condition Vulnerability in Apache Tomcat Leading to Remote Code Execution
CVE-2024-50379ApacheApache Tomcat🥇📈👾🟡📰9.8CRITICALUnchecked Error Condition Vulnerability Affects Apache Tomcat
CVE-2024-52316ApacheApache Tomcat👾🟡9.8CRITICALSecurity Flaw Allowing Malicious Template Registration in Apache CloudStack
CVE-2024-50386ApacheApache CloudStack9.9CRITICALAllocation of Resources Without Limits or Throttling Vulnerability Affects Multiple Apache Tomcat Versions
CVE-2024-38286ApacheApache Tomcat8.6HIGHAttackers Can Trick Users into Submitting Malicious CSRF Requests, Leading to Privilege Escalation and Data Exposure
CVE-2024-45693Apache CloudStackCloudstack8.8HIGHUnexpected Session Expiration Vulnerability Affects CloudStack Users
CVE-2024-45462Apache CloudStackCloudstack7.1HIGHArbitrary File Write Vulnerability in ActiveMQ Artemis Could Lead to RCE
CVE-2023-50780ApacheApache ActiveMQ Artemis👾🟡8.8HIGHDeserialization of Untrusted Data Vulnerability Affecting Apache Lucene Replicator
CVE-2024-45772ApacheApache Lucene Replicator8HIGHUnintended Publishing of Sensitive Information in Maven Artifact
CVE-2024-47197ApacheMaven Archetype Plugin7.5HIGHDeserialization Vulnerability in Apache Seata by Apache
CVE-2024-22399ApacheSeata9.8CRITICALApache OFBiz vulnerable to 'Forced Browsing' (Direct Request) attack
CVE-2024-45195ApacheApache Ofbiz👾🟡🦅📰7.5HIGHServer-Side Request Forgery (SSRF) and Improper Control of Generation of Code (Code Injection) Vulnerability in Apache OFBiz
CVE-2024-45507ApacheApache Ofbiz📈EPSS 65%9.8CRITICALMySQL Security Vulnerability in Apache SeaTunnel
CVE-2023-49198ApacheApache Seatunnel Web7.5HIGHGHSL-2023-256: HertzBeat Authenticated (guest role) SQL injection in /api/monitor/{monitorId}/metric/{metricFull}
CVE-2024-42361ApacheHertzbeat9.8CRITICAL