apache
Safeguard articles tagged "apache" — guides, analysis, and best practices for software supply chain and application security.
44 articles
CVE-2020-13927: Apache Airflow's Experimental API Authentication Bypass
CVE-2020-13927 affects Apache Airflow's Experimental API and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-01-18.
CVE-2020-11978: Apache Airflow Command Injection
CVE-2020-11978 affects Apache Airflow and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-01-18.
CVE-2012-0391: Apache Struts 2 Improper Input Validation Vulnerability
CVE-2012-0391 affects Apache Struts 2 and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-01-21.
CVE-2006-1547: Apache Struts 1 ActionForm Denial-of-Service Vulnerability
CVE-2006-1547 affects Apache Struts 1 and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-01-21.
CVE-2016-3088: Apache ActiveMQ Improper Input Validation Vulnerability
CVE-2016-3088 affects Apache ActiveMQ and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-02-10.
CVE-2017-9791: Apache Struts 1 Improper Input Validation Vulnerability
CVE-2017-9791 affects Apache Struts 1 and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-02-10.
CVE-2020-1938: Apache Tomcat Improper Privilege Management Vulnerability
CVE-2020-1938 affects Apache Tomcat and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-03-03.
CVE-2013-2251: Apache Struts Improper Input Validation Vulnerability
CVE-2013-2251 affects Apache Struts and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-03-25.
CVE-2017-12615: Apache Tomcat on Windows Remote Code Execution Vulnerability
CVE-2017-12615 affects Apache Tomcat and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-03-25.
CVE-2017-12617: Apache Tomcat Remote Code Execution Vulnerability
CVE-2017-12617 affects Apache Tomcat and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-03-25.
CVE-2020-1956: Apache Kylin OS Command Injection Vulnerability
CVE-2020-1956 affects Apache Kylin and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-03-25.
CVE-2022-24112: Apache APISIX Authentication Bypass Vulnerability
CVE-2022-24112 affects Apache APISIX and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-08-25.
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.