CVE-2021-40684
Published · Updated
25Vexday Risk Score
Prioritize patching. It exploitation observed by VulnCheck.
ssvc Attendepss 1.2%
from disclosure to weapon
Published on NVDSep 22
VulnCheck+1037d
exploitation probability
1.2%top 32% of all CVEs
observed exploitation
yesVulnCheck
Talend ESB Runtime in all versions from 5.1 to 7.3.1-R2021-09, 7.2.1-R2021-09, 7.1.1-R2021-09, has an unauthenticated Jolokia HTTP endpoint which allows remote access to the JMX of the runtime container, which would allow an attacker the ability to read or modify the container or software running in the container.
Affected products
n/a · n/a