İçeriğe atla
Noroxi

hazelcast kayıtları

hazelcast üreticisine ait 9 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
2
Düzeltme kaydı olan
%77,8
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

9 kayıt
  • CVE-2022-0265
    40Planlayın

    Improper Restriction of XML External Entity Reference in hazelcast/hazelcast

    KritikCVSS 9,8Kavram kanıtıEPSS %3

    hazelcast · hazelcast3 Mar 2022

  • CVE-2020-26168
    39İzleyin

    The LDAP authentication method in LdapLoginModule in Hazelcast IMDG Enterprise 4.x before 4.0.3, and Jet Enterprise 4.x through 4.2, doesn't

    KritikCVSS 9,8İstismar yokEPSS %2

    hazelcast · hazelcast9 Kas 2020

  • CVE-2024-56518
    39İzleyin

    Hazelcast Management Center through 6.0 allows remote code execution via a JndiLoginModule user.provider.url in a hazelcast-client XML docum

    KritikCVSS 9,8İstismar yokEPSS %1

    hazelcast · management center17 Nis 2025

  • CVE-2022-36437
    36İzleyin

    The Connection handler in Hazelcast and Hazelcast Jet allows a remote unauthenticated attacker to access and manipulate data in the cluster

    KritikCVSS 9,1İstismar yokEPSS %1

    hazelcast · hazelcast29 Ara 2022

  • CVE-2023-33265
    35İzleyin

    In Hazelcast through 5.0.4, 5.1 through 5.1.6, and 5.2 through 5.2.3, executor services don't check client permissions properly, allowing au

    YüksekCVSS 8,8İstismar yokEPSS %1

    hazelcast · hazelcast18 Tem 2023

  • CVE-2016-10750
    33İzleyin

    In Hazelcast before 3.11, the cluster join procedure is vulnerable to remote code execution via Java deserialization.

    YüksekCVSS 8,1İstismar yokEPSS %4

    hazelcast · hazelcast22 May 2019

  • CVE-2023-45859
    30İzleyin

    In Hazelcast through 4.1.10, 4.2 through 4.2.8, 5.0 through 5.0.5, 5.1 through 5.1.7, 5.2 through 5.2.4, and 5.3 through 5.3.2, some client

    YüksekCVSS 7,6İstismar yokEPSS %1

    hazelcast · hazelcast28 Şub 2024

  • CVE-2023-45860
    26İzleyin

    In Hazelcast Platform through 5.3.4, a security issue exists within the SQL mapping for the CSV File Source connector.

    OrtaCVSS 6,5İstismar yokEPSS %1

    hazelcast · hazelcast16 Şub 2024

  • CVE-2023-33264
    17İzleyin

    In Hazelcast through 5.0.4, 5.1 through 5.1.6, and 5.2 through 5.2.3, configuration routines don't mask passwords in the member configuratio

    OrtaCVSS 4,3İstismar yokEPSS %1

    hazelcast · hazelcast21 May 2023