Loading HuntDB...

Eclipse Foundation

23 Products 32 CVEs

CVE Severity Distribution (All Time)

Critical
1
High
8
Medium
10
Low
4

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 14 CVEs

Recent CVEs

View all
CVE-2024-10917 LOW 7 months, 3 weeks ago

In Eclipse OpenJ9 versions up to 0.47, the JNI function GetStringUTFLength may return an incorrect value which has wrapped around. From 0.48 the valu…

CVE-2024-3935 UNKNOWN 8 months ago

In Eclipse Mosquito, versions from 2.0.0 through 2.0.18, if a Mosquitto broker is configured to create an outgoing bridge connection, and that bridge…

CVE-2024-10525 UNKNOWN 8 months ago

In Eclipse Mosquitto, from version 1.3.2 through 2.0.18, if a malicious broker sends a crafted SUBACK packet with no reason codes, a client using lib…

CVE-2024-8184 MEDIUM 8 months, 3 weeks ago

There exists a security vulnerability in Jetty's ThreadLimitHandler.getRemote() which can be exploited by unauthorized users to cause remote denial-o…

CVE-2024-6762 LOW 8 months, 3 weeks ago

Jetty PushSessionCacheFilter can be exploited by unauthenticated users to launch remote DoS attacks by exhausting the server’s memory.

CVE-2024-6763 LOW 8 months, 3 weeks ago

Eclipse Jetty is a lightweight, highly scalable, Java-based web server and Servlet engine . It includes a utility class, HttpURI, for URI/URL parsing…

CVE-2024-9823 MEDIUM 8 months, 3 weeks ago

There exists a security vulnerability in Jetty's DosFilter which can be exploited by unauthorized users to cause remote denial-of-service (DoS) attac…

CVE-2024-8376 UNKNOWN 8 months, 3 weeks ago

In Eclipse Mosquitto up to version 2.0.18a, an attacker can achieve memory leaking, segmentation fault or heap-use-after-free by sending specific seq…

CVE-2024-9329 UNKNOWN 9 months ago

In Eclipse Glassfish versions before 7.0.17, The Host HTTP parameter could cause the web application to redirect to the specified URL, when the reque…

CVE-2024-9202 UNKNOWN 9 months, 1 week ago

In Eclipse Dataspace Components versions 0.1.3 to 0.9.0, the Connector component filters which datasets (= data offers) another party can see in a re…