Open Source Vulnerabilities
neuvector-scanner-task, neuvector-scanner-task
apache-hive
Netty is an asynchronous, event-driven network application framework
apache-hive
Netty is an asynchronous, event-driven network application framework
apache-hive
Improper Control of Generation of Code ('Code Injection') vulnerability in Apache Avro Java SDK when generating specific records from untrusted Avro schemas
apache-hive
Improper Control of Generation of Code ('Code Injection') vulnerability in Apache Avro Java SDK when generating specific records from untrusted Avro schemas
minio-operator
ToASCII and ToUnicode functions incorrectly accept Punycode-encoded labels that decode to an ASCII-only label
minio-operator
ToASCII and ToUnicode functions incorrectly accept Punycode-encoded labels that decode to an ASCII-only label
nats-streaming
Previously, resolving relative paths containing parent directory ('
nats-streaming
Previously, resolving relative paths containing parent directory ('
apache-hive
Improper encoding of non-finite floating-point values during MapMessage JSON serialization in Apache Log4j API produces output that is not valid JSON
apache-hive
Improper encoding of non-finite floating-point values during MapMessage JSON serialization in Apache Log4j API produces output that is not valid JSON
nats-streaming
ToASCII and ToUnicode functions incorrectly accept Punycode-encoded labels that decode to an ASCII-only label
nats-streaming
ToASCII and ToUnicode functions incorrectly accept Punycode-encoded labels that decode to an ASCII-only label
Velociraptor VQL injection during notebook restore from backup
Velociraptor VQL injection during notebook restore from backup
apache-nifi
Improper TLS hostname verification vulnerability in Apache HttpComponents Client 5
apache-nifi
Improper TLS hostname verification vulnerability in Apache HttpComponents Client 5
Velociraptor Required Permissions bypass by using client monitoring queries
Velociraptor Required Permissions bypass by using client monitoring queries
