Apache Latest High & Critical Vulnerabilities
Latest High & Critical vulnerabilities published by apache
Vulnerability Published:
🗓️ Published
- Anytime
Sort By:
🗓️ Published Date
- Descending
Command Injection Vulnerability in Apache InLong's Agent Installer
CVE-2026-63046ApacheApache Inlong8.8HIGHSSRF Vulnerability in Apache CloudStack Products
CVE-2026-50112ApacheApache Cloudstack8.8HIGHCommand Injection Vulnerability in Apache CloudStack Affecting System VMs and Virtual Routers
CVE-2026-61400ApacheApache Cloudstack8.8HIGHSSRF and GraphQL Expression Injection Vulnerability in Apache SkyWalking MCP
CVE-2026-34884ApacheApache Skywalking Mcp9.8CRITICALResource Exhaustion in Apache Struts Affects Unauthenticated Users
CVE-2026-73635ApacheApache Struts7.5HIGHUncontrolled Resource Consumption Vulnerability in Apache Struts by Apache
CVE-2026-73634ApacheApache Struts7.5HIGHUncontrolled Resource Consumption Vulnerability in Apache Struts JSON Plugin
CVE-2026-73633ApacheApache Struts7.5HIGHDeserialization Vulnerability in Apache Shindig by Apache
CVE-2026-66256ApacheApache Shindig Common7.2HIGHGit Argument Injection Vulnerability in Apache Allura by Apache
CVE-2026-73240ApacheApache Allura9.8CRITICALApache Airflow Serialization Vulnerability in Scheduler and API Server
CVE-2026-58076ApacheApache Airflow8.8HIGHDeserialization Vulnerability in Apache Airflow Affects Task State Management
CVE-2026-67260ApacheApache Airflow7.3HIGHApache Airflow Task SDK Code Execution Vulnerability
CVE-2026-67587ApacheApache Airflow8.8HIGHAuthorization Flaw in Apache Airflow's Backfill API Allows Unauthorized Access to Workflows
CVE-2026-68968ApacheApache Airflow7.5HIGHImproper TLS Hostname Verification in Apache HttpComponents Client
CVE-2026-71290ApacheApache Httpcomponents ...9.1CRITICALServer-Side Request Forgery Vulnerability in Apache Allura
CVE-2026-69223ApacheApache Allura9.1CRITICALPath Traversal Vulnerability in Apache Tapestry 5.5.0+
CVE-2026-61899ApacheApache Tapestry7.5HIGHCommand Injection Vulnerability in Apache Ranger Software by Apache
CVE-2026-28672ApacheApache Ranger9.8CRITICALSQL Injection Vulnerability in Apache Ranger by Apache
CVE-2026-32227ApacheApache Ranger9.8CRITICALPrivilege Escalation Vulnerability in Apache Ranger
CVE-2026-40920ApacheApache Ranger9.8CRITICALRemote Code Execution Vulnerability in Apache Ranger by Apache
CVE-2026-42537ApacheApache Ranger9.8CRITICALRemote Code Execution Vulnerability in Apache Ranger Plugin Schema Registry
CVE-2026-44416ApacheApache Ranger9.8CRITICALRemote Code Execution in Apache Ranger by Apache
CVE-2026-55799ApacheApache Ranger9.8CRITICALMissing Authentication Vulnerability in Apache Ranger by Apache
CVE-2026-55814ApacheApache Ranger7.5HIGHTLS Hostname Verification Issue in Apache Ranger by Apache
CVE-2026-65942ApacheApache Ranger7.5HIGHBrute-Force Protection Flaw in Apache Ranger Affecting UnixAuth Feature
CVE-2026-65948ApacheApache Ranger7.3HIGH