Known vulnerabilities in Apache Geode
Vendor:
Apache Foundation
Software:
Apache Geode
Software CPE:
cpe:2.3:a:apache_foundation:apache_geode:*:*:*:*:*:*:*:*
Website:
https://www.apache.org
Total vulnerabilities:
3
Public exploits:
1
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
1.15.4
2.0.2
1.15.3
2.0.1
2.0.0
1.15.2
1.15.1
1.15.0
1.14.4
1.13.8
1.12.9
1.14.3
1.13.7
1.12.8
1.12.7
1.12.6
1.12.5
1.12.4
1.12.3
1.7.0
1.6.0
1.5.0
1.4.0
1.3.0
1.2.1
1.2.0
1.1.1
1.1.0
1.14.2
1.13.6
1.14.1
1.13.5
1.14.0
1.13.4
1.13.3
1.12.2
1.13.2
1.12.1
1.13.1
1.13.0
1.12.0
1.9.1
1.9.0
1.11.0
1.10.0
1.9.2
1.8.0
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU59173 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') CVE-2021-34797 |
CWE-74 | Low | 1.12.5, 1.13.5 | 04.01.2022 |
SB2022010406 |
||
| #VU58816 - Improper Control of Generation of Code ('Code Injection') CVE-2021-44228 |
CWE-94 | Critical | 1.12.6, 1.13.5, 1.14.1 | 10.12.2021 |
SB2021121003 SB2021121101 SB2021121201 and 338 more |
||
| #VU26311 - Improper Certificate Validation CVE-2019-10091 |
CWE-295 | Medium | 1.9.1 | 23.03.2020 |
SB2020032306 |