Loading HuntDB...

Eclipse

10 Products 20 CVEs

CVE Severity Distribution (All Time)

Critical
2
High
4
Medium
9
Low
4

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 0 CVEs

Recent CVEs

View all
CVE-2024-6763 LOW 1 year, 1 month ago

Eclipse Jetty is a lightweight, highly scalable, Java-based web server and Servlet engine . It includes a utility class, HttpURI, for URI/URL parsing…

CVE-2024-9823 MEDIUM 1 year, 1 month ago

There exists a security vulnerability in Jetty's DosFilter which can be exploited by unauthorized users to cause remote denial-of-service (DoS) attac…

CVE-2024-43787 MEDIUM 1 year, 3 months ago

Hono is a Web application framework that provides support for any JavaScript runtime. Hono CSRF middleware can be bypassed using crafted Content-Type…

CVE-2024-0740 CRITICAL 1 year, 6 months ago

Eclipse Target Management: Terminal and Remote System Explorer (RSE) version <= 4.5.400 has a remote code execution vulnerability that does not requi…

CVE-2023-5632 HIGH 2 years, 1 month ago

In Eclipse Mosquito before and including 2.0.5, establishing a connection to the mosquitto server without sending data causes the EPOLLOUT event to b…

CVE-2023-36478 HIGH 2 years, 1 month ago

Eclipse Jetty provides a web server and servlet container. In versions 11.0.0 through 11.0.15, 10.0.0 through 10.0.15, and 9.0.0 through 9.4.52, an i…

CVE-2023-3592 MEDIUM 2 years, 1 month ago

In Mosquitto before 2.0.16, a memory leak occurs when clients send v5 CONNECT packets with a will message that contains invalid property types.

CVE-2023-0809 MEDIUM 2 years, 1 month ago

In Mosquitto before 2.0.16, excessive memory is allocated based on malicious initial packets that are not CONNECT packets.

CVE-2023-41900 LOW 2 years, 2 months ago

Jetty is a Java based web server and servlet engine. Versions 9.4.21 through 9.4.51, 10.0.15, and 11.0.15 are vulnerable to weak authentication. If a…

CVE-2023-40167 MEDIUM 2 years, 2 months ago

Jetty is a Java based web server and servlet engine. Prior to versions 9.4.52, 10.0.16, 11.0.16, and 12.0.1, Jetty accepts the `+` character proceedi…