apache
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 1000 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from June 11, 2026 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Apache Polaris: Allows authorized table writers to redirect server-side Iceberg FileIO requests to attacker-controlled endpoints using operation-scoped storage credentials
CVE-2026-97395: Apache Polaris: Allows authorized table writers to dict server-side Iceberg FileIO quests to attacker-controlled endpoints using operation-scoped storage cdentials
Apache DolphinScheduler: Allows unauthorized workflow operations through batch-copy and batch-move endpoints
Apache DolphinScheduler: Improper Authorization Allows Project Read-Only Users to Execute Workflows and Tamper with Workflow Definitions
Apache DolphinScheduler: Missing Authorization in query-dynamic-sub-workflows API Leads to Information Disclosure
Apache DolphinScheduler: Actuator Endpoint Authentication Bypass via Percent-Encoded Paths
Apache DolphinScheduler: Improper Authorization in Sub-Workflow Tasks Allows Unauthorized Workflow Execution
Apache DolphinScheduler: Command Injection in the Alert Script Plugin
Apache DolphinScheduler: Unauthorized Disclosure of Data Source Information via /datasources/unauth-datasource
CVE-2026-82804: Apache DolphinScheduler: Command Injection in the Alert Script Plugin
Monitor apache in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.