Known vulnerabilities in Apache Ant
Vendor:
Apache Foundation
Software:
Apache Ant
Software CPE:
cpe:2.3:a:apache_foundation:apache_ant:*:*:*:*:*:*:*:*
Website:
https://www.apache.org
Total vulnerabilities:
6
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
1.10.18
1.10.17
1.10.16
1.10.15
1.10.14
1.10.13
1.10.12
1.10.11
1.9.16
1.10.10
1.10.9
1.10.8
1.10.7
1.10.6
1.10.5
1.10.4
1.10.3
1.10.2
1.10.1
1.10.0
1.9.15
1.9.14
1.9.13
1.9.12
1.9.11
1.9.10
1.9.9
1.9.8
1.9.7
1.9.6
1.9.5
1.9.4
1.9.3
1.9.2
1.9.1
1.9.0
1.8.4
1.8.3
1.8.2
1.8.1
1.8.0
1.7.1
1.7.0
1.6.5
1.6.4
1.6.3
1.6.2
1.6.1
1.6.0
1.5.4
1.5.3
1.5.2
1.5.1
1.5.0
1.4
1.3
1.2
1.1
Vulnerabilities (6)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU147210 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2026-78254 |
CWE-22 | Medium | 1.10.18 | 07.09.2026 |
SB2026090711 |
||
| #VU114346 - Command injection CVE-2025-7962 |
CWE-77 | Medium | 1.10.18 | 21.08.2025 |
SB2025082145 SB2025082146 SB2025082147 and 57 more |
||
| #VU54856 - Resource exhaustion CVE-2021-36374 |
CWE-400 | Medium | 1.9.16, 1.10.11 | 14.07.2021 |
SB2021071409 SB2021072011 SB2021101927 and 43 more |
||
| #VU54855 - Resource exhaustion CVE-2021-36373 |
CWE-400 | Medium | 1.9.16, 1.10.11 | 14.07.2021 |
SB2021071409 SB2021072011 SB2022080830 and 16 more |
||
| #VU27924 - Incorrect Default Permissions CVE-2020-1945 |
CWE-276 | Low | 1.9.15, 1.10.8 | 15.05.2020 |
SB2020051501 SB2020052114 SB2020060205 and 48 more |
||
| #VU47428 - Permissions, Privileges, and Access Controls CVE-2020-11979 |
CWE-264 | Low | 1.10.9 | 14.05.2020 |
SB2020100804 SB2020100815 SB2020111614 and 51 more |