Known Vulnerabilities for products from Eclipse
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Eclipse".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-75058 json | Not Provided | 2026-08-17 | 2026-08-17 | |
| CVE-2026-63252 json | In Eclipse Milo versions 0.6.0 through 1.1.4, UASC server transport handlers fail to release retained partial message chunks ... | Not Provided | 2026-08-04 | 2026-08-05 |
| CVE-2026-63248 json | In Eclipse Milo versions 0.6.0 through 1.1.4, OPC UA server diagnostics nodes do not enforce access authorization. An anonymo... | Not Provided | 2026-08-04 | 2026-08-05 |
| CVE-2026-62927 json | Not Provided | 2026-08-04 | 2026-08-04 | |
| CVE-2026-61891 json | In Eclipse Theia versions up to and including 1.73.1, the `@theia/filesystem` backend exposes HTTP file-download endpoints (`... | Not Provided | 2026-08-05 | 2026-08-07 |
| CVE-2026-61387 json | In Eclipse Milo versions 1.0.0 through 1.1.4, monitored-item quota accounting is not exception-safe: if item creation fails w... | Not Provided | 2026-08-04 | 2026-08-05 |
| CVE-2026-60009 json | Not Provided | 2026-08-05 | 2026-08-05 | |
| CVE-2026-60007 json | In Eclipse Milo versions 0.6.0 through 1.1.4, username-token processing returns distinguishable errors for invalid RSA PKCS#1... | Not Provided | 2026-08-04 | 2026-08-05 |
| CVE-2026-59328 json | Not Provided | 2026-07-30 | 2026-07-30 | |
| CVE-2026-59327 json | Not Provided | 2026-07-30 | 2026-07-30 | |
| CVE-2026-58080 json | In Eclipse Milo versions 1.0.0 through 1.1.4, `OpcUaServerConfig.copy()` fails to preserve a configured `RoleMapper`. On serv... | Not Provided | 2026-08-04 | 2026-08-05 |
| CVE-2026-46581 json | In Eclipse Mojarra versions 2.3 and following, URL handing in `DefaultFaceletFactory` does not properly sanitize and/or block... | Not Provided | 2026-08-05 | 2026-08-10 |
| CVE-2026-46580 json | In Eclipse Theia versions prior to 1.71.0, files matching the pattern .prompts/*.prompttemplate in a workspace were automatic... | Not Provided | 2026-06-18 | 2026-06-22 |
| CVE-2026-44691 json | In Eclipse Theia versions prior to 1.69.0, custom task definitions in workspace files (e.g. .theia/tasks.json, .vscode/tasks.... | Not Provided | 2026-06-18 | 2026-06-22 |
| CVE-2026-44688 json | In Eclipse Theia versions prior to 1.71.0, the AI chat agent processed workspace file and directory names as part of its prom... | Not Provided | 2026-06-18 | 2026-06-22 |
| CVE-2026-24457 json | An unsafe parsing of OpenMQ's configuration in OpenMQ versions <6.5.2 and <6.9.0, allows a remote attacker to read arbitrary ... | Not Provided | 2026-03-05 | 2026-08-05 |
| CVE-2026-22886 json | OpenMQ exposes a TCP-based management service (imqbrokerd) that by default requires authentication. However, the product ship... | Not Provided | 2026-03-03 | 2026-04-09 |
| CVE-2026-22551 json | In Eclipse Theia versions prior to 1.71.0, the AI chat rendered Markdown image tags from AI responses, triggering HTTP reques... | Not Provided | 2026-06-18 | 2026-06-22 |
| CVE-2026-16454 json | In Eclipse hawkBit versions 1.0.3 and prior, a privilege escalation vulnerability (CWE-284 / CWE-862) has been identified i... | Not Provided | 2026-07-21 | 2026-08-11 |
| CVE-2026-16441 json | In Eclipse OpenJ9 versions up to 0.60, when executing class files where a previously concrete superclass method has been reco... | Not Provided | 2026-07-21 | 2026-08-18 |
Known software with vulnerabilities from Eclipse
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Eclipse | Buildship | 3.1.1 |
| Application | Eclipse | Business Intelligence And Reporting Tools | 1.0.0 |
| Application | Eclipse | Californium | 1.0.0 |
| Application | Eclipse | Che | 4.0.0 |
| Application | Eclipse | Eclipse Ide | 1.0 |
| Application | Eclipse | Egit | - |
| Application | Eclipse | Hawkbit | 0.2.0 |
| Application | Eclipse | Hono | 0.9 |
| Application | Eclipse | Jetty | 10.0.0 |
| Application | Eclipse | Jgit | - |
| Application | Eclipse | Kura | 2.0.2 |
| Application | Eclipse | Memory Analyzer | 1.9.1 |
| Application | Eclipse | Mojarra | 1.2-20 |
| Application | Eclipse | Mosquitto | 0.1 |
| Application | Eclipse | Omr | - |
| Application | Eclipse | Openj9 | 0.0 |
| Application | Eclipse | Paho Java Client | 1.2.0 |
| Application | Eclipse | Rdf4j | 1.0.0 |
| Application | Eclipse | Theia | 0.0.1 |
| Application | Eclipse | Tinydtls | 0.8.1 |