Known vulnerabilities in Apache JMeter
Vendor:
Apache Foundation
Software:
Apache JMeter
Software CPE:
cpe:2.3:a:apache_foundation:apache_jmeter:*:*:*:*:*:*:*:*
Website:
https://www.apache.org
Total vulnerabilities:
3
Public exploits:
1
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU58816 - Improper Control of Generation of Code ('Code Injection') CVE-2021-44228 |
CWE-94 | Critical | 5.4.1 | 10.12.2021 |
SB2021121003 SB2021121101 SB2021121201 and 338 more |
||
| #VU10461 - Permissions, Privileges, and Access Controls CVE-2018-1297 |
CWE-264 | Low | - | 13.02.2018 |
SB2018021303 |
||
| #VU10460 - Permissions, Privileges, and Access Controls CVE-2018-1287 |
CWE-264 | Low | - | 13.02.2018 |
SB2018021303 |