Apache Popular Vulnerabilities
Popular vulnerabilities are those that have been exploited or trending within the past 365 days.
Partial Fix for Content-Type Based Configuration Ignores Use of Legacy Handlers, Leading to Source Code Disclosure
CVE-2024-40725
ApacheApache Http Serverπ₯ππΎ5.3MEDIUM
Incorrect Authorization Vulnerability Affects Apache OFBiz Through 18.12.14
CVE-2024-38856
ApacheApache Ofbizπ₯ππΎπ£9.8CRITICAL
Flawed File Upload Logic in Apache Struts Exposes Vulnerability
CVE-2024-53677
ApacheApache Strutsπ₯ππΎ
Race Condition Vulnerability in Apache Tomcat Leading to Remote Code Execution
CVE-2024-50379
ApacheApache Tomcatπ₯ππΎ9.8CRITICAL
Race Condition Vulnerability in Apache Tomcat Affects Multiple Versions
CVE-2024-56337
Apacheπ₯π
SQL Injection Vulnerability in Apache Traffic Control
CVE-2024-45387
ApacheApache Traffic ControlππΎ9.9CRITICAL
RCE Vulnerability in Apache HugeGraph-Server
CVE-2024-27348
ApacheApache Hugegraph-serverππΎπ£9.8CRITICAL
Apache Tomcat Vulnerability: Generation of Error Message Containing Sensitive Information
CVE-2024-21733
ApacheApache TomcatππΎ5.3MEDIUM
Server-Side Request Forgery (SSRF) and Improper Control of Generation of Code (Code Injection) Vulnerability in Apache OFBiz
CVE-2024-45507
ApacheApache Ofbizπ9.8CRITICAL
Incorrect Object Recycling and Reuse Vulnerability in Apache Tomcat
CVE-2024-52318
ApacheπΎ
Incorrect Object Recycling Vulnerability Affects Apache Tomcat Versions
CVE-2024-52317
ApacheπΎ
Unchecked Error Condition Vulnerability Affects Apache Tomcat
CVE-2024-52316
ApacheApache TomcatπΎ
Arbitrary File Write Vulnerability in ActiveMQ Artemis Could Lead to RCE
CVE-2023-50780
ApacheApache ActiveMQ ArtemisπΎ8.8HIGH
Apache Avro Java SDK Vulnerability
CVE-2024-47561
ApacheApache Avro Java SdkπΎ
Apache OFBiz vulnerable to 'Forced Browsing' (Direct Request) attack
CVE-2024-45195
ApacheApache OfbizπΎ7.5HIGH
SAML Authentication Vulnerability in CloudStack Environments
CVE-2024-41107
ApacheApache CloudstackπΎ8.1HIGH
Improper Handling of Exceptional Conditions, Uncontrolled Resource Consumption Vulnerability Affects Apache Tomcat
CVE-2024-34750
ApacheApache TomcatπΎ
Code Execution or Source Code Disclosure Vulnerability in Apache HTTP Server's mod_rewrite
CVE-2024-38475
ApacheApache Http ServerπΎ
Cryptographically Weak Pseudo-Random Number Generator (PRNG) Vulnerability Affects Apache StreamPipes from 0.69.0 to 0.93.0
CVE-2024-29868
ApacheApache StreampipesπΎ
Improper Input Validation Vulnerability in Apache Superset Allows for File Reading and Insertion
CVE-2024-34693
ApacheApache SupersetπΎ6.8MEDIUM
Apache OFBiz vulnerable to Path Traversal attack
CVE-2024-36104
ApacheApache OfbizπΎ
Apache OFBiz Fixes Path Traversal Vulnerability
CVE-2024-32113
ApacheApache OfbizπΎπ£9.8CRITICAL
nghttp2 Temporarily Buffers Incoming Headers to Prevent Memory Exhaustion
CVE-2024-27316
ApacheApache Http ServerπΎ7.5HIGH
Malicious Input Validation Flaw Affects Apache HTTP Server
CVE-2023-38709
ApacheApache Http ServerπΎ
Apache Tomcat Denial of Service Vulnerability Affects Multiple Versions
CVE-2024-24549
ApacheApache TomcatπΎ
Apache James Vulnerability: Deserialization of Untrusted Data Could Lead to Privilege Escalation
CVE-2023-51518
ApacheApache James ServerπΎ
Deserialization of Untrusted Data Vulnerability
CVE-2024-23114
ApacheApache CamelπΎ
Allocation of Resources Without Limits or Throttling Vulnerability
CVE-2024-26308
ApacheApache Commons CompressπΎ5.5MEDIUM
Improper Control of Dynamically-Managed Code Resources, Unrestricted Upload of File with Dangerous Type, Inclusion of Functionality from Untrusted Control Sphere Vulnerability in Apache Solr
CVE-2023-50386
ApacheApache SolrπΎ8.8HIGH