Known Vulnerabilities for Glassfish by Eclipse
Listed below are 6 of the newest known vulnerabilities associated with "Glassfish" by "Eclipse".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-24457 json | An unsafe parsing of OpenMQ's configuration in OpenMQ versions <6.5.2 and <6.9.0, allows a remote attacker to read arbitrary ... | Not Provided | 2026-03-05 | 2026-08-05 |
| CVE-2026-12606 json | Eclipse Grizzly in versions before 5.0.2, cannot properly parse the trailer section in malformed trailer header's line, which... | Not Provided | 2026-07-14 | 2026-07-27 |
| CVE-2026-12605 json | In Eclipse GlassFish versions 8.0.x before 8.0.4, CSRF + SSRF in DownloadServlet ContentSources leaks the admin `gfresttoken`... | Not Provided | 2026-08-06 | 2026-08-06 |
| CVE-2026-2587 json | Not Provided | 2026-05-19 | 2026-07-24 | |
| CVE-2026-2586 json | Not Provided | 2026-05-19 | 2026-07-24 | |
| CVE-2024-9342 json | Not Provided | 2025-07-16 | 2026-06-18 | |
| CVE-2023-5763 json | In Eclipse Glassfish 5 or 6, running with old versions of JDK (lower than 6u211, or < 7u201, or < 8u191), allows remote attac... | 9.8 - CRITICAL | 2023-11-03 | 2023-11-13 |
| CVE-2022-2712 json | In Eclipse GlassFish versions 5.1.0 to 6.2.5, there is a vulnerability in relative path traversal because it does not filter ... | 9.8 - CRITICAL | 2023-01-27 | 2026-07-22 |