opentelemetry
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 47 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from October 2, 2023 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →OpenTelemetry-Go: Log gRPC exporter ignores env TLS certs, bypassing mTLS/pinning
OpenTelemetry-Go: BatchProcessor can busy-spin when export buffer is full
OpenTelemetry-Go: UTF-8 replacement rune bypasses attribute length truncation
OpenTelemetry-Go: Exporter config logging may leak endpoint URLs in info logs
OpenTelemetry JavaScript: Denial of service in `JaegerPropagator` via unhandled exception on a malformed header
OpenTelemetry Javaagent RMI context propagation allows resource exhaustion
OpenTelemetry Java Instrumentation: JDBC Auto-Instrumentation Logging Clear-Text Passwords
opentelemetry-js: Unbounded memory allocation in W3C Baggage propagation
opentelemetry-cpp: OTLP HTTP exporters read unbounded HTTP response
OpenTelemetry-Go's Schema ParseFile leaks file descriptors on each parse
Monitor opentelemetry in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.