Known Vulnerabilities for Hive by Apache
Listed below are 10 of the newest known vulnerabilities associated with "Hive" by "Apache".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-57381 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Property Hive PropertyH... | Not Provided | 2026-07-13 | 2026-07-13 |
| CVE-2026-42729 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Property Hive PropertyH... | Not Provided | 2026-05-27 | 2026-05-27 |
| CVE-2026-8757 json | A vulnerability was found in adenhq hive up to 0.11.0. This affects the function _read_events_tail of the file core/framework... | Not Provided | 2026-05-17 | 2026-05-18 |
| CVE-2026-7824 json | An issue was discovered in the PaperCut Hive Ricoh embedded application. When the "Deep Logging" (diagnostic) mode is enabled... | Not Provided | 2026-05-05 | 2026-05-05 |
| CVE-2025-59874 json | HCL Hive Telco Observability is affected by a Required directives missing from the CSP issue is detected in keycloak compon... | Not Provided | 2026-06-04 | 2026-06-04 |
| CVE-2021-34538 json | Apache Hive before 3.1.3 "CREATE" and "DROP" function operations does not check for necessary authorization of involved entit... | 7.5 - HIGH | 2022-07-16 | 2022-07-21 |
| CVE-2021-4125 json | It was found that the original fix for log4j CVE-2021-44228 and CVE-2021-45046 in the OpenShift metering hive containers was ... | 8.1 - HIGH | 2022-08-24 | 2023-11-07 |
| CVE-2020-13949 json | In Apache Thrift 0.9.3 to 0.13.0, malicious RPC clients could send short messages which would result in a large memory alloca... | 7.5 - HIGH | 2021-02-12 | 2023-11-07 |
| CVE-2020-5421 json | In Spring Framework versions 5.2.0 - 5.2.8, 5.1.0 - 5.1.17, 5.0.0 - 5.0.18, 4.3.0 - 4.3.28, and older unsupported versions, t... | 6.5 - MEDIUM | 2020-09-19 | 2023-11-07 |
| CVE-2020-1926 json | Apache Hive cookie signature verification used a non constant time comparison which is known to be vulnerable to timing attac... | 5.9 - MEDIUM | 2021-03-16 | 2022-08-05 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Apache | Hive | 3.1.1 | |||
| Application | Apache | Hive | 3.1.0 | |||
| Application | Apache | Hive | 3.0.0 | |||
| Application | Apache | Hive | 2.7.0 | |||
| Application | Apache | Hive | 2.7.0 | |||
| Application | Apache | Hive | 2.7.0 | |||
| Application | Apache | Hive | 2.6.1 | |||
| Application | Apache | Hive | 2.6.0 | |||
| Application | Apache | Hive | 2.5.0 | |||
| Application | Apache | Hive | 2.4.0 | |||
| Application | Apache | Hive | 2.3.8 | |||
| Application | Apache | Hive | 2.3.4 | |||
| Application | Apache | Hive | 2.3.3 | |||
| Application | Apache | Hive | 2.3.2 | |||
| Application | Apache | Hive | 2.3.1 | |||
| Application | Apache | Hive | 2.3.0 | |||
| Application | Apache | Hive | 2.2.1 | |||
| Application | Apache | Hive | 2.2.0 | |||
| Application | Apache | Hive | 2.1.1 | |||
| Application | Apache | Hive | 2.1.0 |