Known Vulnerabilities for Ignite by Apache
Listed below are 9 of the newest known vulnerabilities associated with "Ignite" by "Apache".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2025-48977 json | Relative Path Traversal vulnerability in Apache Ignite REST API. Authenticated REST API users can read any file on the serve... | Not Provided | 2026-05-28 | 2026-05-28 |
| CVE-2021-28164 json | In Eclipse Jetty 9.4.37.v20210219 to 9.4.38.v20210224, the default compliance mode allows requests with URIs that contain %2e... | 5.3 - MEDIUM | 2021-04-01 | 2023-11-07 |
| CVE-2021-28163 json | In Eclipse Jetty 9.4.32 to 9.4.38, 10.0.0.beta2 to 10.0.1, and 11.0.0.beta2 to 11.0.1, if a user uses a webapps directory tha... | 2.7 - LOW | 2021-04-01 | 2023-11-07 |
| CVE-2020-1963 json | Apache Ignite uses H2 database to build SQL distributed execution engine. H2 provides SQL functions which could be used by at... | 9.1 - CRITICAL | 2020-06-03 | 2023-11-07 |
| CVE-2018-8018 json | In Apache Ignite before 2.4.8 and 2.5.x before 2.5.3, the serialization mechanism does not have a list of classes allowed for... | 9.8 - CRITICAL | 2018-07-20 | 2023-11-07 |
| CVE-2018-1295 json | In Apache Ignite 2.3 or earlier, the serialization mechanism does not have a list of classes allowed for serialization/deseri... | 9.8 - CRITICAL | 2018-04-02 | 2023-11-07 |
| CVE-2018-1273 json | Spring Data Commons, versions prior to 1.13 to 1.13.10, 2.0 to 2.0.5, and older unsupported versions, contain a property bind... | 9.8 - CRITICAL | 2018-04-11 | 2022-07-25 |
| CVE-2017-7686 json | Not Provided | 2017-06-28 | 2025-04-20 | |
| CVE-2016-6805 json | Not Provided | 2017-04-07 | 2025-04-20 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Apache | Ignite | 2.8.1 | |||
| Application | Apache | Ignite | 2.8.0 | |||
| Application | Apache | Ignite | 2.7.6 | |||
| Application | Apache | Ignite | 2.7.5 | |||
| Application | Apache | Ignite | 2.7.0 | |||
| Application | Apache | Ignite | 2.6.0 | |||
| Application | Apache | Ignite | 2.5.0 | |||
| Application | Apache | Ignite | 2.4.0 | |||
| Application | Apache | Ignite | 2.3.0 | |||
| Application | Apache | Ignite | 2.2.0 | |||
| Application | Apache | Ignite | 2.1.0 | |||
| Application | Apache | Ignite | 2.0.0 | |||
| Application | Apache | Ignite | 1.9.0 | |||
| Application | Apache | Ignite | 1.8.0 | |||
| Application | Apache | Ignite | 1.7.10 | |||
| Application | Apache | Ignite | 1.7.0 | |||
| Application | Apache | Ignite | 1.6.4 | |||
| Application | Apache | Ignite | 1.6.0 | |||
| Application | Apache | Ignite | 1.5.0 | |||
| Application | Apache | Ignite | 1.5.0 |