Known vulnerabilities in Apache MINA
Vendor:
Apache Foundation
Software:
Apache MINA
Software CPE:
cpe:2.3:a:apache_foundation:mina:*:*:*:*:*:*:*:*
Website:
https://www.apache.org
Total vulnerabilities:
5
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
2.1.15
2.0.31
2.2.9
2.1.14
2.0.30
2.2.8
2.1.13
2.0.29
2.2.7
2.1.12
2.2.6
2.1.11
2.0.28
2.2.5
2.2.4
2.1.10
2.0.27
2.1.9
2.0.26
2.2.3
2.1.8
2.0.25
2.2.2
2.1.7
2.0.24
2.2.1
2.2.0
2.1.6
2.0.23
2.1.5
2.0.22
2.1.3
2.0.21
2.1.2
2.1.1
2.1.0
2.0.20
2.0.19
2.0.18
2.0.17
2.0.16
2.0.15
2.0.14
2.0.13
2.0.12
2.0.11
2.0.10
2.0.9
2.0.8
2.0.7
2.0.6
2.0.5
2.0.4
2.0.3
2.0.2
2.0.1
2.0.0-RC1
2.0.0-M6
2.0.0-M5
2.0.0-M4
2.0.0-M3
2.0.0-M2
2.0.0-M1
2.0.0
1.1.7
1.1.6
1.1.5
1.1.4
1.1.3
1.1.2
1.1.1
1.1.0
1.0.10
1.0.9
1.0.8
1.0.7
1.0.6
1.0.5
1.0.4
1.0.3
1.0.2
1.0.1
1.0.0
0.9.5
0.9.4
0.9.3
0.9.2
0.9.1
0.9.0
0.8.4
0.8.3
0.8.2
0.8.1
0.8.0
0.7.4
0.7.3
0.7.2
0.7.1
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU128406 - Deserialization of Untrusted Data CVE-2026-41409 |
CWE-502 | High | 2.0.28, 2.1.11, 2.2.6 | 28.04.2026 |
SB20260428219 SB2026050317 SB2026050318 and 4 more |
||
| #VU128405 - Improper Access Control CVE-2026-41635 |
CWE-284 | High | 2.0.28, 2.1.11, 2.2.6 | 28.04.2026 |
SB20260428219 SB2026050317 SB2026050318 and 4 more |
||
| #VU101974 - Deserialization of Untrusted Data CVE-2024-52046 |
CWE-502 | High | 2.0.27, 2.1.10, 2.2.4 | 28.12.2024 |
SB2024122801 SB20250117140 SB2025020549 and 23 more |
||
| #VU57846 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2021-41973 |
CWE-835 | Medium | 2.0.22, 2.1.5 | 01.11.2021 |
SB2021110114 SB2022042540 SB20230418165 and 4 more |
||
| #VU26209 - Cleartext Transmission of Sensitive Information CVE-2019-0231 |
CWE-319 | Low | 2.0.21, 2.1.1 | 19.03.2020 |
SB2019100129 SB2020031901 SB2022080805 and 3 more |