Apache / Guacamole
13 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2024-35164 | Apache Guacamole: Improper input validation of console codes | HIGH | 7.5 | Jul 2, 2025 |
| CVE-2023-43826 | Apache Guacamole: Integer overflow in handling of VNC image buffers | HIGH | 8.8 | Dec 19, 2023 |
| CVE-2023-30576 | Apache Guacamole: Use-after-free in handling of RDP audio input buffer | HIGH | 8.1 | Jun 7, 2023 |
| CVE-2023-30575 | Apache Guacamole: Incorrect calculation of Guacamole protocol element lengths | HIGH | 7.5 | Jun 7, 2023 |
| CVE-2021-43999 | Improper validation of SAML responses | HIGH | 8.8 | Jan 11, 2022 |
| CVE-2021-41767 | Private tunnel identifier may be included in the non-private details of active connections | MEDIUM | 6.5 | Jan 11, 2022 |
| CVE-2020-11997 | Apache Guacamole 1.2.0 and earlier do not consistently restrict access to connection history based on user visibility. If multiple users share access to the sa… | MEDIUM | 4.3 | Jan 19, 2021 |
| CVE-2020-9498 | Apache Guacamole 1.1.0 and older may mishandle pointers involved inprocessing data received via RDP static virtual channels. If a userconnects to a malicious o… | MEDIUM | 6.7 | Jul 2, 2020 |
| CVE-2020-9497 | Apache Guacamole 1.1.0 and older do not properly validate datareceived from RDP servers via static virtual channels. If a userconnects to a malicious or compro… | MEDIUM | 4.4 | Jul 2, 2020 |
| CVE-2019-19603 | sqlite: mishandling of certain SELECT statements with non-existent VIEW can lead to DoS | HIGH | 7.5 | Dec 9, 2019 |
| CVE-2018-1340 | Prior to 1.0.0, Apache Guacamole used a cookie for client-side storage of the user's session token. This cookie lacked the "secure" flag, which could allow an… | HIGH | 7.5 | Feb 7, 2019 |
| CVE-2017-3158 | A race condition in Guacamole's terminal emulator in versions 0.9.5 through 0.9.10-incubating could allow writes of blocks of printed data to overlap. Such ove… | HIGH | 8.1 | Jan 18, 2018 |
| CVE-2016-1566 | Cross-site scripting (XSS) vulnerability in the file browser in Guacamole 0.9.8 and 0.9.9, when file transfer is enabled to a location shared by multiple users… | MEDIUM | 5.4 | Feb 2, 2017 |
Showing 1 to 13 of 13 CVEs