Known Vulnerabilities for Iotdb by Apache
Listed below are 10 of the newest known vulnerabilities associated with "Iotdb" by "Apache".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-51656 json | 9.8 - CRITICAL | 2023-12-21 | 2024-01-02 | |
| CVE-2023-30771 json | Incorrect Authorization vulnerability in Apache Software Foundation Apache IoTDB.This issue affects the iotdb-web-workbench c... | 9.8 - CRITICAL | 2023-04-17 | 2023-06-06 |
| CVE-2023-24831 json | Improper Authentication vulnerability in Apache Software Foundation Apache IoTDB.This issue affects Apache IoTDB Grafana Conn... | 9.8 - CRITICAL | 2023-04-17 | 2023-04-28 |
| CVE-2023-24830 json | Improper Authentication vulnerability in Apache Software Foundation Apache IoTDB.This issue affects iotdb-web-workbench compo... | 7.5 - HIGH | 2023-01-30 | 2023-11-07 |
| CVE-2023-24829 json | Incorrect Authorization vulnerability in Apache Software Foundation Apache IoTDB.This issue affects the iotdb-web-workbench c... | 8.8 - HIGH | 2023-01-31 | 2023-11-07 |
| CVE-2022-43766 json | Apache IoTDB version 0.12.2 to 0.12.6, 0.13.0 to 0.13.2 are vulnerable to a Denial of Service attack when accepting untrusted... | 7.5 - HIGH | 2022-10-26 | 2022-10-28 |
| CVE-2022-38370 json | Apache IoTDB grafana-connector version 0.13.0 contains an interface without authorization, which may expose the internal stru... | 7.5 - HIGH | 2022-09-05 | 2022-09-09 |
| CVE-2022-38369 json | Apache IoTDB version 0.13.0 is vulnerable by session id attack. Users should upgrade to version 0.13.1 which addresses this i... | 8.8 - HIGH | 2022-09-05 | 2022-09-09 |
| CVE-2020-25649 json | A flaw was found in FasterXML Jackson Databind, where it did not have entity expansion secured properly. This flaw allows vul... | 7.5 - HIGH | 2020-12-03 | 2023-11-07 |
| CVE-2020-1952 json | An issue was found in Apache IoTDB .9.0 to 0.9.1 and 0.8.0 to 0.8.2. When starting IoTDB, the JMX port 31999 is exposed with ... | 9.8 - CRITICAL | 2020-04-27 | 2020-05-04 |