Known Vulnerabilities for Atlas by Apache
Listed below are 10 of the newest known vulnerabilities associated with "Atlas" by "Apache".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2025-58019 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Search Atlas Group Sear... | Not Provided | 2025-09-22 | 2026-04-01 |
| CVE-2024-52472 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Weather Atlas Weather A... | Not Provided | 2024-11-20 | 2026-04-01 |
| CVE-2024-47387 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Search Atlas Group Sear... | Not Provided | 2024-10-05 | 2026-04-01 |
| CVE-2020-17521 | Apache Groovy provides extension methods to aid with creating temporary directories. Prior to this fix, Groovy's implementati... | 5.5 - MEDIUM | 2020-12-07 | 2023-11-07 |
| CVE-2020-13928 | Apache Atlas before 2.1.0 contain a XSS vulnerability. While saving search or rendering elements values are not sanitized cor... | 6.1 - MEDIUM | 2020-09-16 | 2020-09-23 |
| CVE-2019-10070 | Apache Atlas versions 0.8.3 and 1.1.0 were found vulnerable to Stored Cross-Site Scripting in the search functionality | 6.1 - MEDIUM | 2019-11-18 | 2023-11-07 |
| CVE-2017-3155 | Apache Atlas versions 0.6.0-incubating and 0.7.0-incubating were found vulnerable to cross frame scripting. | 6.1 - MEDIUM | 2017-08-29 | 2023-11-07 |
| CVE-2017-3154 | Error responses from Apache Atlas versions 0.6.0-incubating and 0.7.0-incubating included stack trace, exposing excessive inf... | 7.5 - HIGH | 2017-08-29 | 2023-11-07 |
| CVE-2017-3153 | Apache Atlas versions 0.6.0-incubating and 0.7.0-incubating were found vulnerable to Reflected XSS in the search functionalit... | 6.1 - MEDIUM | 2017-08-29 | 2023-11-07 |
| CVE-2017-3152 | Apache Atlas versions 0.6.0-incubating and 0.7.0-incubating were found vulnerable to DOM XSS in the edit-tag functionality. | 6.1 - MEDIUM | 2017-08-29 | 2023-11-07 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Apache | Atlas | 2.1.0 | rc3 | All | All |
| Application | Apache | Atlas | 2.1.0 | rc2 | All | All |
| Application | Apache | Atlas | 2.1.0 | rc1 | All | All |
| Application | Apache | Atlas | 2.1.0 | rc0 | All | All |
| Application | Apache | Atlas | 2.1.0 | - | All | All |
| Application | Apache | Atlas | 2.0.0 | rc2 | All | All |
| Application | Apache | Atlas | 2.0.0 | rc1 | All | All |
| Application | Apache | Atlas | 2.0.0 | rc0 | All | All |
| Application | Apache | Atlas | 1.2.0 | rc1 | All | All |
| Application | Apache | Atlas | 1.2.0 | rc0 | All | All |
| Application | Apache | Atlas | 1.2.0 | rc2 | All | All |
| Application | Apache | Atlas | 1.2.0 | rc3 | All | All |
| Application | Apache | Atlas | 1.1.0 | rc2 | All | All |
| Application | Apache | Atlas | 1.1.0 | rc1 | All | All |
| Application | Apache | Atlas | 1.1.0 | rc0 | All | All |
| Application | Apache | Atlas | 1.1.0 | All | All | All |
| Application | Apache | Atlas | 1.0.0 | alpha-rc0 | All | All |
| Application | Apache | Atlas | 1.0.0 | rc2 | All | All |
| Application | Apache | Atlas | 1.0.0 | rc1 | All | All |
| Application | Apache | Atlas | 1.0.0 | rc0 | All | All |