Lyrie
← Home

#apache

31 stories tagged.

CRITICAL: CVE-2026-49268 (CVSS 9.1) — apache shiro

1 min · 3 sources

CRITICAL: CVE-2023-33246 actively exploited — apache rocketmq

1 min · 4 sources

CRITICAL: CVE-2020-5499 (CVSS 9.8) — apache rust sgx sdk

1 min · 3 sources

CRITICAL: CVE-1999-1199 (CVSS 10) — apache http server

1 min · 3 sources

CRITICAL: CVE-1999-0067 (CVSS 10) — apache http server

1 min · 3 sources

CRITICAL: CVE-2018-1273 actively exploited — broadcom spring data commons

1 min · 4 sources

CRITICAL: CVE-2026-50628 (CVSS 9.8) — apache cxf

1 min · 3 sources

CRITICAL: CVE-2026-50627 (CVSS 9.1) — apache cxf

1 min · 3 sources

CRITICAL: CVE-2026-49875 (CVSS 9.8) — apache cxf

1 min · 3 sources

CRITICAL: CVE-2019-17571 (CVSS 9.8) — apache log4j

1 min · 3 sources

CRITICAL: CVE-2009-3555 (CVSS 9.8) — apache http server

1 min · 3 sources

CRITICAL: CVE-2022-23305 (CVSS 9.8) — apache log4j

1 min · 3 sources

CRITICAL: CVE-2026-45434 (CVSS 9.8) — apache ofbiz

1 min · 3 sources

CRITICAL: CVE-2015-3188 (CVSS 9.8) — apache storm

1 min · 3 sources

CRITICAL: CVE-2026-27446 (CVSS 9.8) — apache activemq artemis

1 min · 3 sources

CRITICAL: CVE-2025-55754 (CVSS 9.6) — apache tomcat

1 min · 3 sources

Two Frames to Own the Server: CVE-2026-23918 and the Apache HTTP/2 Double-Free That Stole May's Patch Cycle

10 min · 0 sources

Two Frames, One Crash: CVE-2026-23918 and the Apache HTTP/2 Double-Free That Unlocks Unauthenticated RCE

9 min · 0 sources

The Data Lake Is Poisoned: Apache Polaris Triple CVSS-9.9 Cluster Exposes Enterprise Lakehouses to Credential Hijack and Arbitrary Storage Access

9 min · 0 sources

CRITICAL: CVE-2026-40010 (CVSS 9.1) — apache wicket

1 min · 3 sources

The Early Reset Kill Chain: CVE-2026-23918 Apache HTTP/2 Double-Free Enables Unauthenticated DoS and Working RCE PoC

10 min · 0 sources

The Web Server the World Forgot to Patch: CVE-2026-23918 and the Apache HTTP/2 Double-Free That Opens 60% of the Internet to RCE

8 min · 0 sources

The Incomplete Patch Trilogy: Apache MINA's Deserialization Crisis and the Allowlist That Wasn't (CVE-2026-42779, CVE-2026-42778, CVE-2026-41635)

10 min · 0 sources

CVE-2025-30065: Apache Parquet RCE — Perfect CVSS 10.0 Score

1 min · 0 sources

CISA: CVE-2026-34197 added to Known Exploited Vulnerabilities — Apache ActiveMQ

4 min · 3 sources

CISA: CVE-2024-38475 added to Known Exploited Vulnerabilities — Apache HTTP Server

4 min · 3 sources

CISA: CVE-2025-24813 added to Known Exploited Vulnerabilities — Apache Tomcat

1 min · 3 sources

CISA: CVE-2024-45195 added to Known Exploited Vulnerabilities — Apache OFBiz

1 min · 3 sources

CISA: CVE-2024-27348 added to Known Exploited Vulnerabilities — Apache HugeGraph-Server

1 min · 3 sources

CISA: CVE-2024-38856 added to Known Exploited Vulnerabilities — Apache OFBiz

1 min · 3 sources

CISA: CVE-2024-32113 added to Known Exploited Vulnerabilities — Apache OFBiz

1 min · 3 sources