Org.apache.ignite:ignite-core
This hub aggregates every CVE we track for Org.apache.ignite:ignite-core, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
6
CVEs tracked
4
Critical
1
High
0
In CISA KEV
Severity distribution
CRITICAL4HIGH1MEDIUM1
Monthly trend
0
0
0
0
0
1
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 6 most recently published vulnerabilities affecting Org.apache.ignite:ignite-core.
- CVE-2024-52577Apache Ignite: Possible RCE when deserializing incoming messages by the server node9.0
- CVE-2020-1963Apache Ignite uses H2 database to build SQL distributed execution engine. H2 provides SQL functions which could be used by attacker to access to a filesystem.9.1
- CVE-2018-8018In Apache Ignite before 2.4.8 and 2.5.x before 2.5.3, the serialization mechanism does not have a list of classes allowed for serialization/deserialization, which makes it possible to run arbitrary...9.8
- CVE-2018-1295In Apache Ignite 2.3 or earlier, the serialization mechanism does not have a list of classes allowed for serialization/deserialization, which makes it possible to run arbitrary code when 3-rd party...9.8
- CVE-2017-7686Apache Ignite 1.0.0-RC3 to 2.0 uses an update notifier component to update the users about new project releases that include additional functionality, bug fixes and performance improvements. To do ...7.5
- CVE-2016-6805Apache Ignite before 1.9 allows man-in-the-middle attackers to read arbitrary files via XXE in modified update-notifier documents.5.9
Product normalization is registry-driven with AI assist and human review. How it works