Shenyu
Apache · 9 CVEs
CVE-2023-25753
MEDIUM
Server-Side Request Forgery in Apache ShenYu
Oct 19, 2023
CVE-2022-42735
HIGH
Apache ShenYu Admin ultra vires
Feb 15, 2023
CVE-2022-37435
HIGH
Apache ShenYu Admin Improper Privilege Management
Sep 1, 2022
CVE-2022-26650
HIGH
Apache ShenYu (incubating) Regular expression denial of service
May 17, 2022
CVE-2022-23945
HIGH
Apache ShenYu missing authentication allows gateway registration
Jan 25, 2022
CVE-2022-23944
CRITICAL
Apache ShenYu 2.4.1 Improper access control
Jan 25, 2022
CVE-2022-23223
HIGH
Apache ShenYu Password leakage
Jan 25, 2022
CVE-2021-45029
CRITICAL
Apache ShenYu 2.4.1 Groovy Code Injection & SpEL Injection
Jan 25, 2022
CVE-2021-37580
CRITICAL
Apache ShenYu Admin bypass JWT authentication
Nov 16, 2021
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2023-25753 | Server-Side Request Forgery in Apache ShenYu | MEDIUM | 0.84% | Oct 19, 2023 |
| CVE-2022-42735 | Apache ShenYu Admin ultra vires | HIGH | 1.19% | Feb 15, 2023 |
| CVE-2022-37435 | Apache ShenYu Admin Improper Privilege Management | HIGH | 1.31% | Sep 1, 2022 |
| CVE-2022-26650 | Apache ShenYu (incubating) Regular expression denial of service | HIGH | 2.66% | May 17, 2022 |
| CVE-2022-23945 | Apache ShenYu missing authentication allows gateway registration | HIGH | 3.77% | Jan 25, 2022 |
| CVE-2022-23944 | Apache ShenYu 2.4.1 Improper access control | CRITICAL | 79.01% | Jan 25, 2022 |
| CVE-2022-23223 | Apache ShenYu Password leakage | HIGH | 4.31% | Jan 25, 2022 |
| CVE-2021-45029 | Apache ShenYu 2.4.1 Groovy Code Injection & SpEL Injection | CRITICAL | 6.03% | Jan 25, 2022 |
| CVE-2021-37580 | Apache ShenYu Admin bypass JWT authentication | CRITICAL | 41.85% | Nov 16, 2021 |
Showing 1 to 9 of 9 CVEs