NIST

CVE intelligence

Cached from NVD. 2026-09-19 PT. Apache.

CVETitleVendorPublishedCVSSKEV listed
CVE-2026-34486Apache Tomcat Missing Encryption of Sensitive Data VulnerabilityApache2026-04-092026-08-04
CVE-2026-34197Apache ActiveMQ Improper Input Validation VulnerabilityApache2026-04-072026-04-16
CVE-2025-24813Apache Tomcat Path Equivalence VulnerabilityApache2025-03-102025-04-01
CVE-2024-45195Apache OFBiz Forced Browsing VulnerabilityApache2024-09-042025-02-04
CVE-2024-38856Apache OFBiz Incorrect Authorization VulnerabilityApache2024-08-052024-08-27
CVE-2024-38475Apache HTTP Server Improper Escaping of Output VulnerabilityApache2024-07-012025-05-01
CVE-2024-32113Apache OFBiz Path Traversal VulnerabilityApache2024-05-082024-08-07
CVE-2024-27348Apache HugeGraph-Server Improper Access Control VulnerabilityApache2024-04-222024-09-18
CVE-2023-46604Apache ActiveMQ Deserialization of Untrusted Data VulnerabilityApache2023-10-272023-11-02
CVE-2023-33246Apache RocketMQ Command Execution VulnerabilityApache2023-05-242023-09-06
CVE-2023-27524Apache Superset Insecure Default Initialization of Resource VulnerabilityApache2023-04-242024-01-08
CVE-2022-33891Apache Spark Command Injection VulnerabilityApache2022-07-182023-03-07
CVE-2022-24706Apache CouchDB Insecure Default Initialization of Resource VulnerabilityApache2022-04-262022-08-25
CVE-2022-24112Apache APISIX Authentication Bypass VulnerabilityApache2022-02-112022-08-25
CVE-2021-45046Apache Log4j2 Deserialization of Untrusted Data VulnerabilityApache2021-12-142023-05-01
CVE-2021-42013Apache HTTP Server Path Traversal VulnerabilityApache2021-10-072021-11-03
CVE-2021-41773Apache HTTP Server Path Traversal VulnerabilityApache2021-10-052021-11-03
CVE-2020-17519Apache Flink Improper Access Control VulnerabilityApache2021-01-052024-05-23
CVE-2020-17530Apache Struts Remote Code Execution VulnerabilityApache2020-12-112021-11-03
CVE-2020-13927Apache Airflow's Experimental API Authentication BypassApache2020-11-102022-01-18
CVE-2020-11978Apache Airflow Command InjectionApache2020-07-172022-01-18
CVE-2020-1956Apache Kylin OS Command Injection VulnerabilityApache2020-05-222022-03-25
CVE-2020-1938Apache Tomcat Improper Privilege Management VulnerabilityApache2020-02-242022-03-03
CVE-2019-17558Apache Solr VelocityResponseWriter Plug-In Remote Code Execution VulnerabilityApache2019-12-302021-11-03
CVE-2019-0193Apache Solr DataImportHandler Code Injection VulnerabilityApache2019-08-012021-12-10
CVE-2019-0211Apache HTTP Server Privilege Escalation VulnerabilityApache2019-04-082021-11-03
CVE-2018-11776Apache Struts Remote Code Execution VulnerabilityApache2018-08-222021-11-03
CVE-2017-12617Apache Tomcat Remote Code Execution VulnerabilityApache2017-10-042022-03-25
CVE-2017-12615Apache Tomcat on Windows Remote Code Execution VulnerabilityApache2017-09-192022-03-25
CVE-2017-9805Apache Struts Deserialization of Untrusted Data VulnerabilityApache2017-09-152021-11-03
CVE-2017-9791Apache Struts 1 Improper Input Validation VulnerabilityApache2017-07-102022-02-10
CVE-2016-8735Apache Tomcat Remote Code Execution VulnerabilityApache2017-04-062023-05-12
CVE-2017-5638Apache Struts Remote Code Execution VulnerabilityApache2017-03-112021-11-03
CVE-2016-4437Apache Shiro Code Execution VulnerabilityApache2016-06-072021-11-03
CVE-2016-3088Apache ActiveMQ Improper Input Validation VulnerabilityApache2016-06-012022-02-10
CVE-2013-2251Apache Struts Improper Input Validation VulnerabilityApache2013-07-202022-03-25
CVE-2012-0391Apache Struts 2 Improper Input Validation VulnerabilityApache2012-01-082022-01-21
CVE-2006-1547Apache Struts 1 ActionForm Denial-of-Service VulnerabilityApache2006-03-302022-01-21

1–38 of 38Clear