Loading HuntDB...

Apache Software Foundation

284 Products 1321 CVEs

CVE Severity Distribution (Last 90 Days)

Critical
0
High
0
Medium
0
Low
0

Timeline Overview

Last 30 Days 0 CVEs
Last 90 Days 0 CVEs
This Year 4 CVEs

Recent CVEs

View all
CVE-2024-45627 UNKNOWN 4 months, 3 weeks ago

In Apache Linkis <1.7.0, due to the lack of effective filtering of parameters, an attacker configuring malicious Mysql JDBC parameters in the DataSou…

CVE-2025-22828 MEDIUM 4 months, 3 weeks ago

CloudStack users can add and read comments (annotations) on resources they are authorised to access.  Due to an access validation issue that affects…

CVE-2024-45033 HIGH 4 months, 4 weeks ago

Insufficient Session Expiration vulnerability in Apache Airflow Fab Provider. This issue affects Apache Airflow Fab Provider: before 1.5.2. When us…

CVE-2024-54676 UNKNOWN 4 months, 4 weeks ago

Vendor: The Apache Software Foundation Versions Affected: Apache OpenMeetings from 2.1.0 before 8.0.0 Description: Default clustering instructions …

Related Security News

SonicWall Exploit Chain Exposes Admin Hijack Risk via CVE-2023-44221 and CVE-2024-38475
2025-05-05 00:28 SecurityOnline.info

A newly exploit chain targeting SonicWall’s Secure Mobile Access (SMA) appliances has been released. Published by watchTowr Labs, The post SonicWall Exploit Chain Exposes Admin Hijack Risk via CVE-20…

watchTowr Warns of Active Exploitation of SonicWall SMA 100 Devices
2025-05-03 21:26 HackRead

watchTowr reveals active exploitation of SonicWall SMA 100 vulnerabilities (CVE-2024-38475 & CVE-2023-44221) potentially leading to full system takeover…

Attackers exploited old flaws to breach SonicWall SMA appliances (CVE-2024-38475, CVE-2023-44221)
2025-05-02 13:16 Help Net Security

Attackers have been using two previously known vulnerabilities (CVE-2024-38475, CVE-2023-44221) to compromise SonicWall secure mobile access devices, the vendor has confirmed by updating the associat…

CISA Adds Two Known Exploited Vulnerabilities to Catalog
2025-05-01 12:00 Cisa.gov

CISA has added two new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. CVE-2024-38475 Apache HTTP Server Improper Escaping of Output Vulnerab…

Text4Shell-Exploit - A Custom Python-based Proof-Of-Concept (PoC) Exploit Targeting Text4Shell (CVE-2022-42889), A Critical Remote Code Execution Vulnerability In Apache Commons Text Versions
2025-04-23 12:30 Kitploit.com

A custom Python-based proof-of-concept (PoC) exploit targeting Text4Shell (CVE-2022-42889), a critical remote code execution vulnerability in Apache Commons Text versions vulnerable Java applications…