Known vulnerabilities in HugeGraph-Server
Vendor:
Apache Foundation
Software:
HugeGraph-Server
Software CPE:
cpe:2.3:a:apache_foundation:hugegraph-server:*:*:*:*:*:*:*:*
Website:
https://www.apache.org
Total vulnerabilities:
4
Public exploits:
1
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU119843 - Missing Authentication for Critical Function CVE-2025-26866 |
CWE-306 | High | 1.7.0 | 11.12.2025 |
SB2025121123 |
||
| #VU101975 - Improper Authentication CVE-2024-43441 |
CWE-287 | High | 1.5.0 | 28.12.2024 |
SB2024122802 |
||
| #VU94373 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2024-27348 |
CWE-78 | Critical | 1.3.0 | 16.07.2024 |
SB2024071638 |
||
| #VU94372 - Improper Authentication CVE-2024-27349 |
CWE-287 | High | 1.3.0 | 16.07.2024 |
SB2024071638 |