Known Vulnerabilities for Hive by Apache
Listed below are 10 of the newest known vulnerabilities associated with "Hive" by "Apache".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-57381 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Property Hive PropertyH... | Not Provided | 2026-07-13 | 2026-07-13 |
| CVE-2026-42729 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Property Hive PropertyH... | Not Provided | 2026-05-27 | 2026-05-27 |
| CVE-2025-59874 json | HCL Hive Telco Observability is affected by a Required directives missing from the CSP issue is detected in keycloak compon... | Not Provided | 2026-06-04 | 2026-06-04 |
| CVE-2025-2241 json | A flaw was found in Hive, a component of Multicluster Engine (MCE) and Advanced Cluster Management (ACM). This vulnerability ... | Not Provided | 2025-03-17 | 2026-08-21 |
| CVE-2024-35931 json | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Skip do PCI error slot reset during RAS reco... | Not Provided | 2024-05-19 | 2026-08-04 |
| CVE-2023-35393 json | Azure Apache Hive Spoofing Vulnerability | Not Provided | 2023-08-08 | 2026-08-10 |
| CVE-2021-34538 json | Apache Hive before 3.1.3 "CREATE" and "DROP" function operations does not check for necessary authorization of involved entit... | 7.5 - HIGH | 2022-07-16 | 2022-07-21 |
| CVE-2021-4125 json | It was found that the original fix for log4j CVE-2021-44228 and CVE-2021-45046 in the OpenShift metering hive containers was ... | 8.1 - HIGH | 2022-08-24 | 2023-11-07 |
| CVE-2020-13949 json | In Apache Thrift 0.9.3 to 0.13.0, malicious RPC clients could send short messages which would result in a large memory alloca... | 7.5 - HIGH | 2021-02-12 | 2023-11-07 |
| CVE-2020-5421 json | In Spring Framework versions 5.2.0 - 5.2.8, 5.1.0 - 5.1.17, 5.0.0 - 5.0.18, 4.3.0 - 4.3.28, and older unsupported versions, t... | 6.5 - MEDIUM | 2020-09-19 | 2023-11-07 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Apache | Hive | 3.1.1 | |||
| Application | Apache | Hive | 3.1.0 | |||
| Application | Apache | Hive | 3.0.0 | |||
| Application | Apache | Hive | 2.7.0 | |||
| Application | Apache | Hive | 2.7.0 | |||
| Application | Apache | Hive | 2.7.0 | |||
| Application | Apache | Hive | 2.6.1 | |||
| Application | Apache | Hive | 2.6.0 | |||
| Application | Apache | Hive | 2.5.0 | |||
| Application | Apache | Hive | 2.4.0 | |||
| Application | Apache | Hive | 2.3.8 | |||
| Application | Apache | Hive | 2.3.4 | |||
| Application | Apache | Hive | 2.3.3 | |||
| Application | Apache | Hive | 2.3.2 | |||
| Application | Apache | Hive | 2.3.1 | |||
| Application | Apache | Hive | 2.3.0 | |||
| Application | Apache | Hive | 2.2.1 | |||
| Application | Apache | Hive | 2.2.0 | |||
| Application | Apache | Hive | 2.1.1 | |||
| Application | Apache | Hive | 2.1.0 |