Known Vulnerabilities for products from Odata4j Project
Listed below are 3 of the newest known vulnerabilities associated with the vendor "Odata4j Project".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2016-11024 json | odata4j 0.7.0 allows ExecuteJPQLQueryCommand.java SQL injection. NOTE: this product is apparently discontinued. | 9.8 - CRITICAL | 2020-03-30 | 2020-03-30 |
| CVE-2016-11023 json | odata4j 0.7.0 allows ExecuteCountQueryCommand.java SQL injection. NOTE: this product is apparently discontinued. | 9.8 - CRITICAL | 2020-03-30 | 2020-03-30 |
| CVE-2014-0171 json | XML external entity (XXE) vulnerability in StaxXMLFactoryProvider2 in Odata4j, as used in Red Hat JBoss Data Virtualization b... | 5 - MEDIUM | 2015-01-15 | 2020-03-26 |
Known software with vulnerabilities from Odata4j Project
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Odata4j Project | Odata4j | - |