Known vulnerabilities in Apache DolphinScheduler - page 2
Vendor:
Apache Foundation
Software:
Apache DolphinScheduler
Software CPE:
cpe:2.3:a:apache_foundation:dolphinscheduler:*:*:*:*:*:*:*:*
Website:
https://www.apache.org
Total vulnerabilities:
23
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
3.4.3
3.4.2
3.4.1
3.4.0
3.3.2
3.3.1
3.2.2
3.2.1
3.1.9
3.2.0
3.1.8
2.0.9
3.0.6
3.1.7
3.1.6
3.1.5
3.0.5
3.1.4
2.0.8
3.1.3
3.0.4
3.1.2
3.0.3
3.0.2
3.1.1
2.0.7
3.1.0
3.0.1
3.0.0
2.0.6
2.0.5
2.0.4
2.0.3
2.0.2
2.0.1
2.0.0
1.3.0
1.1.0
1.0.5
1.0.4
1.0.3
1.0.2
1.0.1
1.0.0
2.0.0-alpha
1.3.9
1.3.8
1.3.6
1.3.5
1.3.4
1.3.3
1.3.2
1.3.1
1.2.1
1.2.0
Vulnerabilities (23)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU69763 - Unprotected Storage of Credentials CVE-2022-26885 |
CWE-256 | Low | 2.0.6 | 30.11.2022 |
SB2022113037 |
||
| #VU69762 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2022-45462 |
CWE-78 | Medium | 2.0.6 | 30.11.2022 |
SB2022113037 |
||
| #VU57875 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2021-27644 |
CWE-89 | Medium | 1.3.6 | 02.11.2021 |
SB2021110226 |
Showing elements 21 - 40 out of 23