h
hazelcast
Security Risk Profile
82
/100
criticalSecurity Risk Score
Comprehensive risk assessment based on 12 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from April 26, 2016 to present
12
Total CVEs
10
Critical+High
0
Exploited
4
Unpatched
Threat Assessment
Avg CVSS
8.2
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
4
Critical/High
Risk Level
82/100
critical
🆕 2Fresh (<7d)📈 2 in Last 30 Days
Severity Distribution
Critical
5High
5Medium
2Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Input Validation
1
2
Code Injection
1
3
SQL Injection
1
4
Infoleak
1
5
XEE
1
Most Affected Products
1. hazelcast hazelcast34
2. maven/com.hazelcast:hazelcast19
3. maven/com.hazelcast:hazelcast-enterprise6
4. redhat/hazelcast5
5. hazelcast Management Center2
Recent Vulnerabilities
See more →CVE-2026-107726
CVSS 9.3critical
Hazelcast: Arbitrary member memory access by low-privileged client
Oct 8, 2026
CVE-2026-107725
CVSS 8.7high
Hazelcast: Authorization bypass in IMap Predicates API
Oct 8, 2026
CVE-2024-56518
CVSS 9.8critical
Apr 17, 2025🔧 No Patch
CVE-2023-45859
CVSS 7.6high
Feb 27, 2024
CVE-2023-45860
CVSS 6.5medium
Feb 16, 2024
CVE-2023-33265
CVSS 8.8high
Jul 18, 2023
CVE-2023-33264
CVSS 4.3medium
May 22, 2023
CVE-2022-36437
CVSS 9.1critical
Dec 29, 2022
CVE-2022-0265
CVSS 9.8critical
Improper Restriction of XML External Entity Reference in hazelcast/hazelcast
Mar 3, 2022
CVE-2020-26168
CVSS 9.8critical
Nov 9, 2020🔧 No Patch
Monitor hazelcast in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.