CWE-1104 · 29 записей
Use of Unmaintained Third Party Components
CVE этого класса
29 записей
| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
52В плане | CVE-2023-7102Готовый эксплойт | Remote Code Execution (RCE) Vulnerabilitybarracuda · email security gateway 300 firmware · CWE-1104 | Критическая9,8 | — | 44,6 % | 24 дек. 2023 г. |
40В плане | CVE-2025-12104Эксплойта нет | Incorrect Content-Type Headerazure-access · blu-ic2 firmware · CWE-1104 | Критическая10,0 | — | 0,4 % | 23 окт. 2025 г. |
39Наблюдать | CVE-2026-16634Эксплойта нет | TOML::XS versions before 0.06 for Perl bundle an unsupported and vulnerable version of tomlc99felipe · toml::xs · CWE-1104 | Критическая9,8 | — | 0,8 % | 24 июл. 2026 г. |
39Наблюдать | CVE-2026-3031Эксплойта нет | Image::EPEG versions through 0.15 for Perl embeds an unsupported version of the Epeg librarytokuhirom · image::epeg · CWE-1104 | Критическая9,8 | — | 0,7 % | 16 июл. 2026 г. |
38Наблюдать | GHSA-pp8r-vv2j-9j5vЭксплойта нет | traitobject is Unmaintainedcrates.io · traitobject · CWE-1104 | Критическая9,5 | — | — | 16 сент. 2022 г. |
38Наблюдать | GHSA-vfv3-9w6v-23jpЭксплойта нет | typemap is Unmaintainedcrates.io · typemap · CWE-1104 | Критическая9,5 | — | — | 16 сент. 2022 г. |
37Наблюдать | CVE-2025-34192Эксплойта нет | Vasion Print (formerly PrinterLogic) Usage of Outdated and Unsupported OpenSSL Versionvasion · virtual appliance application · CWE-1104 | Критическая9,3 | — | 1,0 % | 19 сент. 2025 г. |
37Наблюдать | CVE-2025-10220Эксплойта нет | Outdated Third-Party NuGet Packages in AxxonSoft Axxon One VMS 2.0.0 through 2.0.4axxonsoft · axxon one · CWE-1104 | Критическая9,3 | — | 0,7 % | 10 сент. 2025 г. |
37Наблюдать | CVE-2026-41468Эксплойта нет | Beghelli Sicuro24 SicuroWeb AngularJS Sandbox Escape via Template Injectionbeghelli · sicuroweb (sicuro24) · CWE-1104 | Критическая9,3 | — | 0,7 % | 22 апр. 2026 г. |
35Наблюдать | CVE-2021-22142Эксплойта нет | Kibana Reporting vulnerabilitieselastic · kibana · CWE-1104 | Высокая8,8 | — | 1,0 % | 21 нояб. 2023 г. |
35Наблюдать | CVE-2022-46871Эксплойта нет | An out of date library (libusrsctp) contained vulnerabilities that could potentially be exploited.mozilla · firefox · CWE-1104 | Высокая8,8 | — | 0,9 % | 22 дек. 2022 г. |
35Наблюдать | CVE-2026-60368Эксплойта нет | Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars).oracle · platform security for java · CWE-1104 | Высокая8,8 | — | 0,5 % | 22 июл. 2026 г. |
34Наблюдать | CVE-2024-11999Эксплойта нет | CWE-1104: Use of Unmaintained Third-Party Components vulnerability exists that could cause complete control of the device when an authenticaschneider electric · harmony (formerly magelis) hmist6, hmistm6, hmig3u, hmig3x, hmisto7 series with ecostruxure operator terminal expert runtime · CWE-1104 | Высокая8,7 | — | 0,6 % | 17 дек. 2024 г. |
34Наблюдать | CVE-2025-3497Эксплойта нет | Radiflow iSAP Smart Collector Linux distribution unmaintainedradiflow · isap smart collector · CWE-1104 | Высокая8,7 | — | 0,4 % | 9 июл. 2025 г. |
34Наблюдать | CVE-2026-12554Эксплойта нет | HP Easy Start for macOS - Security Updatehp inc · hp easy start for macos · CWE-1104 | Высокая8,5 | — | 0,3 % | 24 авг. 2026 г. |
34Наблюдать | CVE-2025-20010Эксплойта нет | Use of unmaintained third party components for some Intel(R) Processor Identification Utility before version 8.0.43 within Ring 3: User ApplCWE-1104 | Высокая8,5 | — | 0,2 % | 11 нояб. 2025 г. |
33Наблюдать | CVE-2026-21821Эксплойта нет | HCL BigFix SCM Reporting is affected by vulnerabilities in jQueryhclsoftware · bigfix scm reporting · CWE-1104 | Высокая8,3 | — | 0,2 % | 13 мая 2026 г. |
31Наблюдать | CVE-2024-35252Эксплойта нет | Azure Storage Movement Client Library Denial of Service Vulnerabilitymicrosoft · azure storage data movement library · CWE-1104 | Высокая7,5 | — | 2,5 % | 11 июн. 2024 г. |
31Наблюдать | CVE-2023-37524Эксплойта нет | HCL Traveler for Microsoft Outlook (HTMO) is susceptible to vulnerabilities due to .NET Framework 4.5 being out of servicehcltech · traveler for microsoft outlook · CWE-1104 | Высокая7,8 | — | 0,3 % | 26 июн. 2026 г. |
31Наблюдать | CVE-2025-14026Эксплойта нет | Vulnerable Python version used in Forcepoint One DLP Clientforcepoint · one data loss prevention · CWE-1104 | Высокая7,8 | — | 0,2 % | 6 янв. 2026 г. |
30Наблюдать | CVE-2026-21752Эксплойта нет | HCL Hive is affected by a use of vulnerable third-party componentshclsoftware · hcl hive · CWE-1104 | Высокая7,5 | — | 0,3 % | 24 авг. 2026 г. |
28Наблюдать | CVE-2025-36745Эксплойта нет | SolarEdge SE3680H contains Linux Kernel vulnerabilitiessolaredge · se3680h firmware · CWE-1104 | Высокая7,0 | — | 0,2 % | 12 дек. 2025 г. |
27Наблюдать | CVE-2026-82935Эксплойта нет | Use of End-of-Life components in mH-DEVELOPERf&f filipowski · mh-developer · CWE-1104 | Средняя6,9 | — | 0,4 % | 1 день назад |
26Наблюдать | CVE-2025-55277Эксплойта нет | HCL Aftermarket DPC is affected by Use of Vulnerable/Outdated Versions vulnerabilityhcltech · aftermarket cloud · CWE-1104 | Средняя6,5 | — | 0,2 % | 26 мар. 2026 г. |
21Наблюдать | GHSA-hrpp-f84w-xhfgЭксплойта нет | Outdated Static Dependency in vue-momentnpm · vue-moment · CWE-1104 | Средняя5,3 | — | — | 4 сент. 2020 г. |
- CVE-2023-710252В плане
Remote Code Execution (RCE) Vulnerability
КритическаяCVSS 9,8Готовый эксплойтEPSS 45 %barracuda · email security gateway 300 firmware24 дек. 2023 г.
- CVE-2025-1210440В плане
Incorrect Content-Type Header
КритическаяCVSS 10,0Эксплойта нетEPSS 0 %azure-access · blu-ic2 firmware23 окт. 2025 г.
- CVE-2026-1663439Наблюдать
TOML::XS versions before 0.06 for Perl bundle an unsupported and vulnerable version of tomlc99
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %felipe · toml::xs24 июл. 2026 г.
- CVE-2026-303139Наблюдать
Image::EPEG versions through 0.15 for Perl embeds an unsupported version of the Epeg library
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %tokuhirom · image::epeg16 июл. 2026 г.
- GHSA-pp8r-vv2j-9j5v38Наблюдать
traitobject is Unmaintained
КритическаяCVSS 9,5Эксплойта нетcrates.io · traitobject16 сент. 2022 г.
- GHSA-vfv3-9w6v-23jp38Наблюдать
typemap is Unmaintained
КритическаяCVSS 9,5Эксплойта нетcrates.io · typemap16 сент. 2022 г.
- CVE-2025-3419237Наблюдать
Vasion Print (formerly PrinterLogic) Usage of Outdated and Unsupported OpenSSL Version
КритическаяCVSS 9,3Эксплойта нетEPSS 1 %vasion · virtual appliance application19 сент. 2025 г.
- CVE-2025-1022037Наблюдать
Outdated Third-Party NuGet Packages in AxxonSoft Axxon One VMS 2.0.0 through 2.0.4
КритическаяCVSS 9,3Эксплойта нетEPSS 1 %axxonsoft · axxon one10 сент. 2025 г.
- CVE-2026-4146837Наблюдать
Beghelli Sicuro24 SicuroWeb AngularJS Sandbox Escape via Template Injection
КритическаяCVSS 9,3Эксплойта нетEPSS 1 %beghelli · sicuroweb (sicuro24)22 апр. 2026 г.
- CVE-2021-2214235Наблюдать
Kibana Reporting vulnerabilities
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %elastic · kibana21 нояб. 2023 г.
- CVE-2022-4687135Наблюдать
An out of date library (libusrsctp) contained vulnerabilities that could potentially be exploited.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %mozilla · firefox22 дек. 2022 г.
- CVE-2026-6036835Наблюдать
Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars).
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %oracle · platform security for java22 июл. 2026 г.
- CVE-2024-1199934Наблюдать
CWE-1104: Use of Unmaintained Third-Party Components vulnerability exists that could cause complete control of the device when an authentica
ВысокаяCVSS 8,7Эксплойта нетEPSS 1 %schneider electric · harmony (formerly magelis) hmist6, hmistm6, hmig3u, hmig3x, hmisto7 series with ecostruxure operator terminal expert runtime17 дек. 2024 г.
- CVE-2025-349734Наблюдать
Radiflow iSAP Smart Collector Linux distribution unmaintained
ВысокаяCVSS 8,7Эксплойта нетEPSS 0 %radiflow · isap smart collector9 июл. 2025 г.
- CVE-2026-1255434Наблюдать
HP Easy Start for macOS - Security Update
ВысокаяCVSS 8,5Эксплойта нетEPSS 0 %hp inc · hp easy start for macos24 авг. 2026 г.
- CVE-2025-2001034Наблюдать
Use of unmaintained third party components for some Intel(R) Processor Identification Utility before version 8.0.43 within Ring 3: User Appl
ВысокаяCVSS 8,5Эксплойта нетEPSS 0 %11 нояб. 2025 г.
- CVE-2026-2182133Наблюдать
HCL BigFix SCM Reporting is affected by vulnerabilities in jQuery
ВысокаяCVSS 8,3Эксплойта нетEPSS 0 %hclsoftware · bigfix scm reporting13 мая 2026 г.
- CVE-2024-3525231Наблюдать
Azure Storage Movement Client Library Denial of Service Vulnerability
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %microsoft · azure storage data movement library11 июн. 2024 г.
- CVE-2023-3752431Наблюдать
HCL Traveler for Microsoft Outlook (HTMO) is susceptible to vulnerabilities due to .NET Framework 4.5 being out of service
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %hcltech · traveler for microsoft outlook26 июн. 2026 г.
- CVE-2025-1402631Наблюдать
Vulnerable Python version used in Forcepoint One DLP Client
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %forcepoint · one data loss prevention6 янв. 2026 г.
- CVE-2026-2175230Наблюдать
HCL Hive is affected by a use of vulnerable third-party components
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %hclsoftware · hcl hive24 авг. 2026 г.
- CVE-2025-3674528Наблюдать
SolarEdge SE3680H contains Linux Kernel vulnerabilities
ВысокаяCVSS 7,0Эксплойта нетEPSS 0 %solaredge · se3680h firmware12 дек. 2025 г.
- CVE-2026-8293527Наблюдать
Use of End-of-Life components in mH-DEVELOPER
СредняяCVSS 6,9Эксплойта нетEPSS 0 %f&f filipowski · mh-developer1 день назад
- CVE-2025-5527726Наблюдать
HCL Aftermarket DPC is affected by Use of Vulnerable/Outdated Versions vulnerability
СредняяCVSS 6,5Эксплойта нетEPSS 0 %hcltech · aftermarket cloud26 мар. 2026 г.
- GHSA-hrpp-f84w-xhfg21Наблюдать
Outdated Static Dependency in vue-moment
СредняяCVSS 5,3Эксплойта нетnpm · vue-moment4 сент. 2020 г.