J
Jboss
Security Risk Profile
29
/100
lowSecurity Risk Score
Comprehensive risk assessment based on 42 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from October 9, 2003 to present
42
Total CVEs
14
Critical+High
0
Exploited
12
Unpatched
Threat Assessment
Avg CVSS
5
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
12
Critical/High
Risk Level
29/100
low
📈 2 in Last 30 Days
Severity Distribution
Critical
1High
13Medium
18Low
6Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
CSRF
3
2
XSS
2
3
SQL Injection
2
4
Null Pointer Dereference
1
5
Input Validation
1
Most Affected Products
1. JBoss JBoss Application Server20
2. JBOSS JBoss11
3. JBoss Undertow6
4. redhat JBoss Enterprise Application Platform4
5. redhat/jbossas4
Recent Vulnerabilities
See more →CVE-2026-76166
CVSS 4.3medium
Modcluster-core: mod_cluster advertise listener: unauthenticated dos via crafted multicast datagram
Aug 4, 2026🔧 No Patch
REDHAT-BUG-2510883
CVSS 4.0medium
Aug 4, 2026🔧 No Patch
REDHAT-BUG-2483131
CVSS 7.0high
May 29, 2026🔧 No Patch
CVE-2026-28369
CVSS 9.1critical
Undertow: undertow: request smuggling via malformed http request headers
Feb 27, 2026🔧 No Patch
REDHAT-BUG-2443261
CVSS 7.0high
Feb 27, 2026🔧 No Patch
REDHAT-BUG-2443262
CVSS 7.0high
Feb 27, 2026🔧 No Patch
REDHAT-BUG-2166022
CVSS 4.0medium
Jan 31, 2023🔧 No Patch
REDHAT-BUG-1790759
CVSS 1.0low
Jan 14, 2020🔧 No Patch
REDHAT-BUG-1573045
CVSS 4.0medium
Apr 30, 2018🔧 No Patch
CVE-2018-1041
CVSS 7.5high
Jan 3, 2018🔧 No Patch
Monitor Jboss in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.