QID 376223

Date Published: 2022-01-17

QID 376223: Apache Karaf Multiple Vulnerabilities

Apache Karaf is a set of bundles (modules), it includes an OSGi framework (a set of tools exported by the base osgi bundle -the core- in order to be used by other bundles)

Affected Versions:
Apache Karaf all version(s) before 4.2.9

QID Detection Logic (Authenticated):
This QID checks for vulnerable version of Apache Karaf .

Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as Critical - 9 severity.
  • Solution
    Refer to Apache Karaf Download Page Apache Karaf downloads for updates and patch information.
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    Apache karaf URL Logo karaf.apache.org/security/|