Loading HuntDB...

apache_software_foundation

21 Products 31 CVEs

CVE Severity Distribution (All Time)

Critical
9
High
8
Medium
3
Low
0

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 9 CVEs

Recent CVEs

View all
CVE-2024-52338 UNKNOWN 9 months, 1 week ago

Deserialization of untrusted data in IPC and Parquet readers in the Apache Arrow R package versions 4.0.0 through 16.1.0 allows arbitrary code execut…

CVE-2024-50306 CRITICAL 9 months, 3 weeks ago

Unchecked return value can allow Apache Traffic Server to retain privileges on startup. This issue affects Apache Traffic Server: from 9.2.0 through…

CVE-2024-50305 HIGH 9 months, 3 weeks ago

Valid Host header field can cause Apache Traffic Server to crash on some platforms. This issue affects Apache Traffic Server: from 9.2.0 through 9.2…

CVE-2024-38479 HIGH 9 months, 3 weeks ago

Improper Input Validation vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: from 8.0.0 through 8.1.11, from 9.0.0 th…

CVE-2024-23590 UNKNOWN 10 months ago

Session Fixation vulnerability in Apache Kylin. This issue affects Apache Kylin: from 2.0.0 through 4.x. Users are recommended to upgrade to versio…

CVE-2024-45219 UNKNOWN 10 months, 3 weeks ago

Account users in Apache CloudStack by default are allowed to upload and register templates for deploying instances and volumes for attaching them as …

CVE-2024-45462 UNKNOWN 10 months, 3 weeks ago

The logout operation in the CloudStack web interface does not expire the user session completely which is valid until expiry by time or restart of th…

CVE-2024-45217 UNKNOWN 10 months, 3 weeks ago

Insecure Default Initialization of Resource vulnerability in Apache Solr. New ConfigSets that are created via a Restore command, which copy a config…

CVE-2024-39928 HIGH 11 months, 2 weeks ago

In Apache Linkis <= 1.5.0, a Random string security vulnerability in Spark EngineConn, random string generated by the Token when starting Py4j uses t…