AS
Üretici güvenlik profili4 aktif sömürülen CVE
Apache Software Foundation
Ürün portföyü, yama kanıtları ve sömürü sinyalleri tek güvenlik karnesinde
Veriler CVE Programı, NVD, CISA KEV ve üretici güvenlik bültenlerinden birleştirilir.
Toplam CVE609
Kritik116
CISA KEV4
Public exploit11
Yama oranı%20
Ort. CVSS7.5
12 aylık açık hızı
0
0
1
2
2
13
4
18
44
168
187
141
CVE KEV
CVE önem dağılımı
609toplam CVE
Kritik116 (19%)
Yüksek289 (47%)
Orta179 (29%)
Düşük10 (2%)
Belirsiz15 (2%)
Yama ve sömürü görünümü
%20
Doğrulanmış yama
%1
CISA KEV
%2
Public exploit
124Yama var
0Kısmi
2Geçici çözüm
0Üretici: yama yok
483Bilinmiyor
Son güvenlik açıkları
-
CVE-2026-103636
Apache DataSketches: datasketches-cpp: Out-of-bounds read in VarOpt union deserialization allows denial of service via a truncated sketch
AS
Yama durumu bilinmiyorEPSS %0
-
CVE-2026-103635
Apache DataSketches: datasketches-cpp: Out-of-bounds read in compact Theta sketch deserialization allows denial of service via a crafted sketch
AS
Yama durumu bilinmiyorEPSS %0
-
CVE-2026-103513
Apache DataSketches: datasketches-cpp: Out-of-bounds read and write in the CPC sketch deserialization allows memory corruption via a crafted sketch
AS
Yama durumu bilinmiyorEPSS %0
-
CVE-2026-103501
Apache DataSketches: datasketches-cpp: HLL CouponList Deserialization Buffer Overflow allows memory corruption via a crafted sketch
AS
Yama durumu bilinmiyorEPSS %0
8.8
CVE-2026-103413
Apache Camel Karavan: unvalidated Kubernetes resources applied from a project's kubernetes.yaml
AS
Yama doğrulandıEPSS %0
8.8
CVE-2026-103412
Apache Camel Karavan: project file name path traversal when committing a project to Git
AS
Yama doğrulandıEPSS %1
-
CVE-2026-108039
Apache CXF: Prevent unbounded XML document size in StaxUtils by adding default element and character limits
AS
Yama durumu bilinmiyorEPSS %0
-
CVE-2026-107938
Apache CXF: The Netty HTTP client transport does not perform TLS hostname verification.
AS
Yama durumu bilinmiyorEPSS %0
-
CVE-2026-107937
Apache CXF: The attachment header size and count limits can be bypassed, which allows denial of service through memory exhaustion.
AS
Yama durumu bilinmiyorEPSS %0
-
CVE-2026-100227
Apache CXF: XML Signature wrapping in JAX-RS XML Security
AS
Yama durumu bilinmiyorEPSS %0