Known vulnerabilities in ShenYu
Vendor:
Apache Foundation
Software:
ShenYu
Software CPE:
cpe:2.3:a:apache_foundation:shenyu:*:*:*:*:*:*:*:*
Website:
https://www.apache.org
Total vulnerabilities:
8
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (8)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU72499 - Improper Privilege Management CVE-2022-42735 |
CWE-269 | Medium | 2.5.1 | 22.02.2023 |
SB2023022230 |
||
| #VU72498 - Improper Privilege Management CVE-2022-37435 |
CWE-269 | Medium | 2.5.0 | 22.02.2023 |
SB2023022229 |
||
| #VU63330 - Incorrect Regular Expression CVE-2022-26650 |
CWE-185 | Medium | 2.4.3 | 17.05.2022 |
SB2022051722 |
||
| #VU60000 - Improper Control of Generation of Code ('Code Injection') CVE-2021-45029 |
CWE-94 | High | 2.4.2 | 25.01.2022 |
SB2022012522 |
||
| #VU59999 - Exposure of sensitive information to an unauthorized actor CVE-2022-23223 |
CWE-200 | Medium | 2.4.2 | 25.01.2022 |
SB2022012522 |
||
| #VU59998 - Improper Authentication CVE-2021-37580 |
CWE-287 | High | 2.4.1 | 25.01.2022 |
SB2021111623 |
||
| #VU59997 - Improper Access Control CVE-2022-23944 |
CWE-284 | High | 2.4.2 | 25.01.2022 |
SB2022012522 |
||
| #VU59996 - Improper Authentication CVE-2022-23945 |
CWE-287 | High | 2.4.2 | 25.01.2022 |
SB2022012522 |