fluentd kayıtları
fluentd üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 3
- Düzeltme kaydı olan
- %87,5
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-276 Incorrect Default Permissions1
- CWE-306 Missing Authentication for Critical Function1
- CWE-400 Uncontrolled Resource Consumption1
- CWE-409 Improper Handling of Highly Compressed Data (Data Amplification)1
- CWE-502 Deserialization of Untrusted Data1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
52Planlayın | CVE-2022-39379İstismar yok | Fluentd vulnerable to remote code execution due to insecure deserialization (in non-default configuration)fluentd · fluentd · CWE-502 | Kritik9,8 | — | %45,0 | 2 Kas 2022 |
40Planlayın | CVE-2017-10906İstismar yok | Escape sequence injection vulnerability in Fluentd versions 0.12.29 through 0.12.40 may allow an attacker to change the terminal UI or execufluentd · fluentd | Kritik9,8 | — | %4,6 | 8 Ara 2017 |
39İzleyin | CVE-2026-44024Kavram kanıtı | Fluentd: Remote Code Execution (RCE) via Arbitrary File Write in `${tag}` Placeholderfluentd · fluentd · CWE-22 | Kritik9,8 | — | %1,1 | 8 Tem 2026 |
35İzleyin | CVE-2020-21514İstismar yok | An issue was discovered in Fluent-ui v.1.2.2 allows attackers to gain escalated privileges and execute arbitrary code due to a default passwfluentd · fluentd · CWE-276 | Yüksek8,8 | — | %0,8 | 4 Nis 2023 |
31İzleyin | CVE-2021-41186İstismar yok | ReDoS vulnerability in parser_apache2fluentd · fluentd · CWE-400 | Yüksek7,5 | — | %2,2 | 29 Eki 2021 |
30İzleyin | CVE-2026-44160İstismar yok | Fluentd: Denial of Service (DoS) via Gzip Decompression Bomb in `in_http` and `in_forward`fluentd · fluentd · CWE-409 | Yüksek7,5 | — | %0,6 | 8 Tem 2026 |
30İzleyin | CVE-2026-44025İstismar yok | Fluentd: Exposure of Sensitive Information via Monitor Agent APIfluentd · fluentd · CWE-306 | Yüksek7,5 | — | %0,5 | 8 Tem 2026 |
28İzleyin | CVE-2026-44161İstismar yok | Fluentd: Server-Side Request Forgery (SSRF) via Placeholder Expansion in `out_http`fluentd · fluentd · CWE-918 | Yüksek7,2 | — | %0,4 | 8 Tem 2026 |
- CVE-2022-3937952Planlayın
Fluentd vulnerable to remote code execution due to insecure deserialization (in non-default configuration)
KritikCVSS 9,8İstismar yokEPSS %45fluentd · fluentd2 Kas 2022
- CVE-2017-1090640Planlayın
Escape sequence injection vulnerability in Fluentd versions 0.12.29 through 0.12.40 may allow an attacker to change the terminal UI or execu
KritikCVSS 9,8İstismar yokEPSS %5fluentd · fluentd8 Ara 2017
- CVE-2026-4402439İzleyin
Fluentd: Remote Code Execution (RCE) via Arbitrary File Write in `${tag}` Placeholder
KritikCVSS 9,8Kavram kanıtıEPSS %1fluentd · fluentd8 Tem 2026
- CVE-2020-2151435İzleyin
An issue was discovered in Fluent-ui v.1.2.2 allows attackers to gain escalated privileges and execute arbitrary code due to a default passw
YüksekCVSS 8,8İstismar yokEPSS %1fluentd · fluentd4 Nis 2023
- CVE-2021-4118631İzleyin
ReDoS vulnerability in parser_apache2
YüksekCVSS 7,5İstismar yokEPSS %2fluentd · fluentd29 Eki 2021
- CVE-2026-4416030İzleyin
Fluentd: Denial of Service (DoS) via Gzip Decompression Bomb in `in_http` and `in_forward`
YüksekCVSS 7,5İstismar yokEPSS %1fluentd · fluentd8 Tem 2026
- CVE-2026-4402530İzleyin
Fluentd: Exposure of Sensitive Information via Monitor Agent API
YüksekCVSS 7,5İstismar yokEPSS %0fluentd · fluentd8 Tem 2026
- CVE-2026-4416128İzleyin
Fluentd: Server-Side Request Forgery (SSRF) via Placeholder Expansion in `out_http`
YüksekCVSS 7,2İstismar yokEPSS %0fluentd · fluentd8 Tem 2026