Vulnerabilidades en x-stream
32 resultadosAnálisis Vexday
X-Stream possui 32 vulnerabilidades catalogadas, com apenas 1 sob ataque ativo confirmado e nenhuma classificada como crítica, indicando risco moderado. A fraqueza dominante (CWE-502 - Desserialização de Dados Não Confiáveis) representa vetor de exploração consistente, embora nenhuma vulnerabilidade tenha sido publicada nos últimos 90 dias, sugerindo que o risco é estável e não recente.
CVE-2021-39144HIGHXStream is vulnerable to a Remote Command Execution attackEPSS 98.1%KEVCVE-2020-26217HIGHRemote Code Execution in XStreamEPSS 85.0%CVE-2020-26259MEDIUMXStream is vulnerable to an Arbitrary File Deletion on the local host when unmarshallingEPSS 82.4%CVE-2021-21351MEDIUMXStream is vulnerable to an Arbitrary Code Execution attackEPSS 82.1%CVE-2020-26258MEDIUMServer-Side Forgery Request can be activated unmarshalling with XStreamEPSS 81.8%CVE-2021-21341HIGHXStream can cause a Denial of ServiceEPSS 77.8%CVE-2021-29505HIGHXStream is vulnerable to a Remote Command Execution attackEPSS 77.7%CVE-2021-21346MEDIUMXStream is vulnerable to an Arbitrary Code Execution attackEPSS 76.4%CVE-2021-21344MEDIUMXStream is vulnerable to an Arbitrary Code Execution attackEPSS 76.0%CVE-2021-21345MEDIUMXStream is vulnerable to a Remote Command Execution attackEPSS 72.3%CVE-2021-21342MEDIUMA Server-Side Forgery Request can be activated unmarshalling with XStream to access data streams from an arbitrary URL referencing a resource in an intranet or the local hostEPSS 50.0%CVE-2021-21349MEDIUMA Server-Side Forgery Request can be activated unmarshalling with XStream to access data streams from an arbitrary URL referencing a resource in an intranet or the local hostEPSS 46.8%CVE-2021-21343MEDIUMXStream is vulnerable to an Arbitrary File Deletion on the local host when unmarshalling as long as the executing process has sufficient rightsEPSS 46.7%CVE-2021-39141HIGHXStream is vulnerable to an Arbitrary Code Execution attackEPSS 16.1%CVE-2021-21350MEDIUMXStream is vulnerable to an Arbitrary Code Execution attackEPSS 15.2%CVE-2021-21347MEDIUMXStream is vulnerable to an Arbitrary Code Execution attackEPSS 14.3%CVE-2021-39146HIGHXStream is vulnerable to an Arbitrary Code Execution attackEPSS 14.3%CVE-2021-21348MEDIUMXStream is vulnerable to an attack using Regular Expression for a Denial of Service (ReDos)EPSS 13.8%CVE-2021-39152HIGHA Server-Side Forgery Request vulnerability in XStream via HashMap unmarshalingEPSS 11.4%CVE-2022-41966HIGHXStream Denial of Service via stack overflow EPSS 8.7%