Known vulnerabilities in Drools

Vendor: redhat
Software: Drools
Software CPE: cpe:2.3::redhat:drools:*:*:*:*:*:*:*:*
Website:
Total vulnerabilities: 2
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Drools Drools is affected by 2 known vulnerabilities: 2 high Critical High Medium Low

Vulnerabilities (2)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU72126 - Deserialization of Untrusted Data
CVE-2022-1415
CWE-502 High
No
No
7.69.0 11.02.2023 SB2023021104
SB2023021106
SB2023021108
and 3 more
#VU67515 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2021-41411
CWE-611 High
No
No
7.60.0 20.09.2022 SB2022092052
SB2022092053
SB2022092054
and 2 more