Hawkbit
Eclipse · 3 CVEs
CVE-2026-16454
MEDIUM
Privilege Escalation in Eclipse hawkBit DDI allows Tenant-Isolated Firmware Exfiltration
Jul 21, 2026
CVE-2020-27219
MEDIUM
In all version of Eclipse Hawkbit prior to 0.3.0M7, the HTTP 404 (Not Found) JSON response body returned by the REST AP…
Jan 14, 2021
CVE-2019-10240
HIGH
Eclipse hawkBit versions prior to 0.3.0M2 resolved Maven build artifacts for the Vaadin based UI over HTTP instead of H…
Apr 3, 2019
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2026-16454 | Privilege Escalation in Eclipse hawkBit DDI allows Tenant-Isolated Firmware Exfiltration | MEDIUM | 0.36% | Jul 21, 2026 |
| CVE-2020-27219 | In all version of Eclipse Hawkbit prior to 0.3.0M7, the HTTP 404 (Not Found) JSON response body returned by the REST API may contain unsafe characters within t… | MEDIUM | 0.83% | Jan 14, 2021 |
| CVE-2019-10240 | Eclipse hawkBit versions prior to 0.3.0M2 resolved Maven build artifacts for the Vaadin based UI over HTTP instead of HTTPS. Any of these dependent artifacts c… | HIGH | 0.43% | Apr 3, 2019 |
Showing 1 to 3 of 3 CVEs