Vulnerabilities in Apache Software Foundation

1,884 results
Vexday analysis

O portfólio da Apache Software Foundation acumula 1.872 CVEs catalogadas, das quais 215 são de severidade crítica e 83 contam com prova de conceito pública — fatores que ampliam a superfície de risco operacional para equipes de segurança. A taxa de exploração ativa é especialmente preocupante: 28 vulnerabilidades constam no catálogo KEV da CISA, representando uma proporção 3,3 vezes acima da média geral do catálogo, o que indica atenção consistente de agentes maliciosos ao ecossistema Apache. A falha mais comum é CWE-20 (validação inadequada de entrada), padrão estrutural que tende a se manifestar em múltiplos produtos e versões, exigindo revisão ampla e não pontual. Destaque para CVE-2021-40438, a vulnerabilidade de maior risco ativo no momento, com EPSS máximo de 1,0 — probabilidade de exploração na prática praticamente certa —, o que a torna prioridade imediata de remediação para qualquer organização que opere componentes Apache afetados.

CVE-2022-23206Server-Side Request Forgery in Traffic Ops endpoint POST /user/login/oauthEPSS 2.0%CVE-2020-9479unzip directory traversalEPSS 2.0%CVE-2020-9485An issue was found in Apache Airflow versions 1.10.10 and below. A stored XSS vulnerability was discovered in the Chart pages of the the "clEPSS 2.0%CVE-2017-3165In Apache Brooklyn before 0.10.0, the REST server is vulnerable to cross-site scripting where one authenticated user can cause scripts to ruEPSS 2.0%CVE-2025-52520HIGHApache Tomcat: DoS via integer overflow in multipart file uploadEPSS 2.0%CVE-2018-20244In Apache Airflow before 1.10.2, a malicious admin user could edit the state of objects in the Airflow metadata database to execute arbitrarEPSS 2.0%CVE-2017-3152Apache Atlas versions 0.6.0-incubating and 0.7.0-incubating were found vulnerable to DOM XSS in the edit-tag functionality.EPSS 2.0%CVE-2017-3153Apache Atlas versions 0.6.0-incubating and 0.7.0-incubating were found vulnerable to Reflected XSS in the search functionality.EPSS 2.0%CVE-2021-36162Unprotected yaml deserialization cause RCEEPSS 2.0%CVE-2017-3150Apache Atlas versions 0.6.0-incubating and 0.7.0-incubating use cookies that could be accessible to client-side script.EPSS 2.0%CVE-2012-3536Two XSS vulnerabilities were fixed in message list and view in the Hupa Webmail application from the Apache James project. An attacker couldEPSS 2.0%CVE-2022-44645HIGHApache Linkis (incubating): The DatasourceManager module has a serialization attack vulnerabilityEPSS 1.9%CVE-2021-36774Mysql JDBC Connector Deserialize RCEEPSS 1.9%CVE-2018-1281The clustered setup of Apache MXNet allows users to specify which IP address and port the scheduler will listen on via the DMLC_PS_ROOT_URI EPSS 1.9%CVE-2025-23184MEDIUMApache CXF: Denial of Service vulnerability with temporary filesEPSS 1.9%CVE-2017-12623An authorized user could upload a template which contained malicious code and accessed sensitive files via an XML External Entity (XXE) attaEPSS 1.9%CVE-2022-25370Unauth Stored XSS vulnerability in the Birt plugin of Apache OFBizEPSS 1.9%CVE-2021-44549SMTPS server hostname not checked when making TLS connection to SMTPS serverEPSS 1.9%CVE-2021-41767Private tunnel identifier may be included in the non-private details of active connectionsEPSS 1.9%CVE-2023-40743CRITICALApache Axis 1.x (EOL) may allow RCE when untrusted input is passed to getServiceEPSS 1.9%