← Home
#apache
31 stories tagged.
CRITICAL: CVE-2026-49268 (CVSS 9.1) — apache shiro
1 min · 3 sources
CRITICAL: CVE-2023-33246 actively exploited — apache rocketmq
1 min · 4 sources
CRITICAL: CVE-2020-5499 (CVSS 9.8) — apache rust sgx sdk
1 min · 3 sources
CRITICAL: CVE-1999-1199 (CVSS 10) — apache http server
1 min · 3 sources
CRITICAL: CVE-1999-0067 (CVSS 10) — apache http server
1 min · 3 sources
CRITICAL: CVE-2018-1273 actively exploited — broadcom spring data commons
1 min · 4 sources
CRITICAL: CVE-2026-50628 (CVSS 9.8) — apache cxf
1 min · 3 sources
CRITICAL: CVE-2026-50627 (CVSS 9.1) — apache cxf
1 min · 3 sources
CRITICAL: CVE-2026-49875 (CVSS 9.8) — apache cxf
1 min · 3 sources
CRITICAL: CVE-2019-17571 (CVSS 9.8) — apache log4j
1 min · 3 sources
CRITICAL: CVE-2009-3555 (CVSS 9.8) — apache http server
1 min · 3 sources
CRITICAL: CVE-2022-23305 (CVSS 9.8) — apache log4j
1 min · 3 sources
CRITICAL: CVE-2026-45434 (CVSS 9.8) — apache ofbiz
1 min · 3 sources
CRITICAL: CVE-2015-3188 (CVSS 9.8) — apache storm
1 min · 3 sources
CRITICAL: CVE-2026-27446 (CVSS 9.8) — apache activemq artemis
1 min · 3 sources
CRITICAL: CVE-2025-55754 (CVSS 9.6) — apache tomcat
1 min · 3 sources
Two Frames to Own the Server: CVE-2026-23918 and the Apache HTTP/2 Double-Free That Stole May's Patch Cycle
10 min · 0 sources
Two Frames, One Crash: CVE-2026-23918 and the Apache HTTP/2 Double-Free That Unlocks Unauthenticated RCE
9 min · 0 sources
The Data Lake Is Poisoned: Apache Polaris Triple CVSS-9.9 Cluster Exposes Enterprise Lakehouses to Credential Hijack and Arbitrary Storage Access
9 min · 0 sources
CRITICAL: CVE-2026-40010 (CVSS 9.1) — apache wicket
1 min · 3 sources
The Early Reset Kill Chain: CVE-2026-23918 Apache HTTP/2 Double-Free Enables Unauthenticated DoS and Working RCE PoC
10 min · 0 sources
The Web Server the World Forgot to Patch: CVE-2026-23918 and the Apache HTTP/2 Double-Free That Opens 60% of the Internet to RCE
8 min · 0 sources
The Incomplete Patch Trilogy: Apache MINA's Deserialization Crisis and the Allowlist That Wasn't (CVE-2026-42779, CVE-2026-42778, CVE-2026-41635)
10 min · 0 sources
CVE-2025-30065: Apache Parquet RCE — Perfect CVSS 10.0 Score
1 min · 0 sources
CISA: CVE-2026-34197 added to Known Exploited Vulnerabilities — Apache ActiveMQ
4 min · 3 sources
CISA: CVE-2024-38475 added to Known Exploited Vulnerabilities — Apache HTTP Server
4 min · 3 sources
CISA: CVE-2025-24813 added to Known Exploited Vulnerabilities — Apache Tomcat
1 min · 3 sources
CISA: CVE-2024-45195 added to Known Exploited Vulnerabilities — Apache OFBiz
1 min · 3 sources
CISA: CVE-2024-27348 added to Known Exploited Vulnerabilities — Apache HugeGraph-Server
1 min · 3 sources
CISA: CVE-2024-38856 added to Known Exploited Vulnerabilities — Apache OFBiz
1 min · 3 sources
CISA: CVE-2024-32113 added to Known Exploited Vulnerabilities — Apache OFBiz
1 min · 3 sources