Products: 1
    Vulnerabilities: 4
    Known Exploited: 0
    1
    Critical Level Threats
    0
    High Level Threats
    2
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-49989

    CrateDB's Blob HTTP handler bypasses authorization

    Last Modified: Aug 17, 2026
    Published: Aug 14, 2026

    CVE-2024-37309

    Client initialized Session-Renegotiation DoS

    Last Modified: Sep 04, 2025
    Published: Jun 13, 2024

    CVE-2024-24565

    CrateDB database has an arbitrary file read vulnerability

    Last Modified: Nov 21, 2024
    Published: Jan 30, 2024

    CVE-2023-51982

    CrateDB 5.5.1 is contains an authentication bypass vulnerability in the Admin UI component. After configuring password authentication and_ Local_ In the case of an address, identity authentication can be bypassed by setting the X-Real IP request header to a specific value and accessing the Admin UI directly using the default user identity.(https://github.com/crate/crate/issues/15231)

    Last Modified: May 29, 2025
    Published: Jan 30, 2024
    Items Per Page
    Cratedb Vulnerabilities & Security CVEs | CVE-DB