Known Vulnerabilities for Atlas by Apache
Listed below are 10 of the newest known vulnerabilities associated with "Atlas" by "Apache".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-40563 json | Description: Improper Control of Generation of Code ('Code Injection') vulnerability in Apache Atlas Apache Atlas exposes a D... | Not Provided | 2026-05-04 | 2026-05-06 |
| CVE-2026-8063 json | An authenticated user can crash mongod when running $rankFusion or $scoreFusion with an empty pipeline on a view. When resol... | Not Provided | 2026-05-07 | 2026-05-07 |
| CVE-2025-58019 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Search Atlas Group Sear... | Not Provided | 2025-09-22 | 2026-04-23 |
| CVE-2025-22509 json | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in TMRW... | Not Provided | 2026-01-08 | 2026-04-27 |
| CVE-2024-52472 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Weather Atlas Weather A... | Not Provided | 2024-11-20 | 2026-04-23 |
| CVE-2024-47387 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Search Atlas Group Sear... | Not Provided | 2024-10-05 | 2026-04-23 |
| CVE-2024-37959 json | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Atlas Public Pol... | Not Provided | 2024-07-20 | 2026-04-28 |
| CVE-2023-51510 json | Cross-Site Request Forgery (CSRF) vulnerability in Atlas Gondal Export Media URLs.This issue affects Export Media URLs: from ... | Not Provided | 2024-03-16 | 2026-04-28 |
| CVE-2023-5163 json | The Weather Atlas Widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'shortcode-weather-atlas' shor... | Not Provided | 2023-11-22 | 2026-04-08 |
| CVE-2022-34271 json | A vulnerability in import module of Apache Atlas allows an authenticated user to write to web server filesystem. This issue a... | 8.8 - HIGH | 2022-12-14 | 2023-11-07 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Apache | Atlas | 2.1.0 | |||
| Application | Apache | Atlas | 2.1.0 | |||
| Application | Apache | Atlas | 2.1.0 | |||
| Application | Apache | Atlas | 2.1.0 | |||
| Application | Apache | Atlas | 2.1.0 | |||
| Application | Apache | Atlas | 2.0.0 | |||
| Application | Apache | Atlas | 2.0.0 | |||
| Application | Apache | Atlas | 2.0.0 | |||
| Application | Apache | Atlas | 1.2.0 | |||
| Application | Apache | Atlas | 1.2.0 | |||
| Application | Apache | Atlas | 1.2.0 | |||
| Application | Apache | Atlas | 1.2.0 | |||
| Application | Apache | Atlas | 1.1.0 | |||
| Application | Apache | Atlas | 1.1.0 | |||
| Application | Apache | Atlas | 1.1.0 | |||
| Application | Apache | Atlas | 1.1.0 | |||
| Application | Apache | Atlas | 1.0.0 | |||
| Application | Apache | Atlas | 1.0.0 | |||
| Application | Apache | Atlas | 1.0.0 | |||
| Application | Apache | Atlas | 1.0.0 |