Org.apache.cxf:cxf-rt-transports-http
This hub aggregates every CVE we track for Org.apache.cxf:cxf-rt-transports-http, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
3
CVEs tracked
0
Critical
2
High
0
In CISA KEV
Severity distribution
HIGH2MEDIUM1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 3 most recently published vulnerabilities affecting Org.apache.cxf:cxf-rt-transports-http.
- CVE-2024-41172Apache CXF: Unrestricted memory consumption in CXF HTTP clients7.5
- CVE-2018-8039It is possible to configure Apache CXF to use the com.sun.net.ssl implementation via 'System.setProperty("java.protocol.handler.pkgs", "com.sun.net.ssl.internal.www.protocol");'. When this system p...8.1
- CVE-2012-5575Apache CXF 2.5.x before 2.5.10, 2.6.x before CXF 2.6.7, and 2.7.x before CXF 2.7.4 does not verify that a specified cryptographic algorithm is allowed by the WS-SecurityPolicy AlgorithmSuite defini...6.4
Product normalization is registry-driven with AI assist and human review. How it works