Known Vulnerabilities for Apache by Vendor
Listed below are 10 of the newest known vulnerabilities associated with "Apache" by "Vendor".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-64609 json | Out-of-bounds read via sun.misc.Unsafe in Apache Fory. When out-of-band zero-copy deserialization is used, readAlignedVarUint... | Not Provided | 2026-07-21 | 2026-07-21 |
| CVE-2026-64608 json | Heap type confusion and out-of-bounds read/write in the Apache Fory C++ implementation. When deserializing data in compatible... | Not Provided | 2026-07-21 | 2026-07-21 |
| CVE-2026-64606 json | Deserialization of untrusted data vulnerability that may allow class-registration checks to be bypassed during Java lambda de... | Not Provided | 2026-07-21 | 2026-07-21 |
| CVE-2026-63071 json | Improper Isolation or Compartmentalization vulnerability in Apache Syncope. An administrator with adequate entitlements for ... | Not Provided | 2026-07-20 | 2026-07-21 |
| CVE-2026-62764 json | Improper Handling of Insufficient Privileges vulnerability in Apache Accumulo. An authenticated, but low-privileged user with... | Not Provided | 2026-07-17 | 2026-07-17 |
| CVE-2026-62418 json | Low-privileged authenticated Server-Side Request Forgery (SSRF) vulnerability in Apache Syncope via Connectors and Resources... | Not Provided | 2026-07-20 | 2026-07-21 |
| CVE-2026-62393 json | Improper Handling of Insufficient Permissions or Privileges vulnerability in Apache Kylin. Improper authorization in job inf... | Not Provided | 2026-07-14 | 2026-07-15 |
| CVE-2026-62392 json | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Apache Kylin. A b... | Not Provided | 2026-07-14 | 2026-07-15 |
| CVE-2026-62390 json | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Kylin. A backend... | Not Provided | 2026-07-14 | 2026-07-14 |
| CVE-2026-62183 json | Improper Privilege Management vulnerability in Apache Syncope. When: * the all-Java user workflow adapter is configured, or... | Not Provided | 2026-07-20 | 2026-07-21 |