Where
-Infinity
0

Eclipse theiaIn Eclipse Theia versions up to and including 1.69.0, opening a folder starts source control integra…

Risk 74
Severity
8.4
First published (updated )

Eclipse UndertowA flaw was found in Undertow, an HTTP server, within its HTTP response header writing path. The `wri…

Risk 19
Severity
4
First published (updated )

Eclipse RDF4jXEE

Risk 47
Severity
8.7
First published (updated )

Eclipse GlassFishSSRF, CSRF

Risk 80
Severity
9.6
First published (updated )

Eclipse theiaPath Traversal, Infoleak

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Eclipse theiaCSRF, Path Traversal

Risk 77
Severity
8.8
First published (updated )

Eclipse Theia TheiaPath Traversal

Risk 43
Severity
7.5
First published (updated )

Eclipse theiaIn Eclipse Theia versions 0.7.0 and up until including 1.73.1, the `PreferenceUtils.merge` function …

Risk 38
Severity
5.7
First published (updated )

Eclipse Accessibility Tools Framework (ACTF)XEE

Risk 31
Severity
4.6
First published (updated )

Eclipse Milo Eclipse MiloIn Eclipse Milo versions 0.6.0 through 1.1.4, OPC UA server diagnostics nodes do not enforce access …

Risk 41
Severity
6.9
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Eclipse Milo OpcUaServerConfig.copy()In Eclipse Milo versions 1.0.0 through 1.1.4, `OpcUaServerConfig.copy()` fails to preserve a configu…

Risk 57
Severity
8.8
First published (updated )

Eclipse Eclipse MiloIn Eclipse Milo versions 0.6.0 through 1.1.4, UASC server transport handlers fail to release retaine…

Risk 47
Severity
8.7
First published (updated )

Eclipse miloIn Eclipse Milo versions 1.0.0 through 1.1.4, the Call service dispatches the original mixed batch t…

Risk 47
Severity
8.7
First published (updated )

Eclipse miloIn Eclipse Milo versions 0.6.0 through 1.1.4, username-token processing returns distinguishable erro…

Risk 63
Severity
9.1
First published (updated )

Eclipse Milo Eclipse MiloIn Eclipse Milo versions 1.0.0 through 1.1.4, monitored-item quota accounting is not exception-safe:…

Risk 43
Severity
6.9
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

oss-sec[CVE pending] Eclipse Milo <= 1.1.4: password-covery oracle, p-auth DoS, and four server flaws

Eclipse BaSyx Go ComponentsCWE-863: ABAC authorization bypass via trailing slash route normalization in Eclipse BaSyx Go Components

Risk 86
Severity
9.8
First published (updated )

maven/org.eclipse.jetty:jetty-securityDigest authentication lossy encoding

Risk 66
Severity
8.7
First published (updated )

Eclipse OMRIn Eclipse OMR versions up to 0.11, the arraycmp SIMD implementation for Z and P does not check if t…

Risk 19
Severity
4
First published (updated )

Eclipse Openj9In Eclipse OpenJ9 versions up to 0.60, when executing class files where a previously concrete superc…

Risk 19
Severity
4
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

IBM WebSphere Application ServerEclipse OpenJ9 : Method resolution default method precedence failure

Risk 42
Severity
6.9
First published (updated )

Eclipse Openj9In Eclipse OpenJ9 versions up to 0.60, using -Xtrace to trace method arguments can lead to buffer un…

Risk 19
Severity
4
First published (updated )

IBM WebSphere Application ServerEclipse OMR : arraycmp SIMD implementation does not check if the number of bytes to compare is zero

Risk 43
Severity
5.7
First published (updated )

Eclipse Openj9Eclipse OpenJ9 : Using -Xtrace to trace method arguments can lead to buffer underflow

Risk 66
Severity
5.8
First published (updated )

Eclipse hawkBit Direct Device Integration (DDI) ControllerPrivilege Escalation in Eclipse hawkBit DDI allows Tenant-Isolated Firmware Exfiltration

Risk 22
Severity
4.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Eclipse JettyFor requests that have a body, but reading the body may end up in reading 0 bytes, there is a buffer…

Risk 43
Severity
7.5
First published (updated )

Eclipse Vert.x Web ClientIn versions up to and including 4.5.29 (4.x branch) and 5.1.4 (5.x branch), the WebClientSession com…

Risk 33
Severity
7
First published (updated )

Eclipse JettyPath Traversal

Risk 27
Severity
5.3
First published (updated )

Eclipse JettyInput Validation

Risk 27
Severity
5.3
First published (updated )

Eclipse JettyInfoleak

Risk 43
Severity
6.9
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203