Vulnerabilities (CVE)

Filtered by vendor Apache Subscribe
Filtered by product Hugegraph
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-43441 1 Apache 1 Hugegraph 2025-07-01 N/A 9.8 CRITICAL
Authentication Bypass by Assumed-Immutable Data vulnerability in Apache HugeGraph-Server. This issue affects Apache HugeGraph-Server: from 1.0.0 before 1.5.0. Users are recommended to upgrade to version 1.5.0, which fixes the issue.
CVE-2024-27349 1 Apache 1 Hugegraph 2025-06-30 N/A 9.1 CRITICAL
Authentication Bypass by Spoofing vulnerability in Apache HugeGraph-Server.This issue affects Apache HugeGraph-Server: from 1.0.0 before 1.3.0. Users are recommended to upgrade to version 1.3.0, which fixes the issue.
CVE-2024-27348 1 Apache 1 Hugegraph 2025-02-13 N/A 9.8 CRITICAL
RCE-Remote Command Execution vulnerability in Apache HugeGraph-Server.This issue affects Apache HugeGraph-Server: from 1.0.0 before 1.3.0 in Java8 & Java11 Users are recommended to upgrade to version 1.3.0 with Java11 & enable the Auth system, which fixes the issue.