Igniterealtime

    Dashboard / Vendors

    Products: 5
    Vulnerabilities: 45
    Known Exploited: 1
    3
    Critical Level Threats
    8
    High Level Threats
    34
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2020-36956

    Openfire 4.6.0 - 'path' Stored XSS

    Last Modified: Apr 15, 2026
    Published: Jan 26, 2026

    CVE-2025-59154

    Openfire allows potential identity spoofing via unsafe CN parsing

    Last Modified: Apr 15, 2026
    Published: Sep 15, 2025

    CVE-2024-25420

    An issue in Ignite Realtime Openfire before 4.8.1 allows a remote attacker to escalate privileges via the admin.authorizedJIDs system property component.

    Last Modified: Nov 11, 2025
    Published: Mar 26, 2024

    CVE-2024-25421

    An issue in Ignite Realtime Openfire v.4.9.0 and before allows a remote attacker to escalate privileges via the ROOM_CACHE component.

    Last Modified: May 07, 2025
    Published: Mar 26, 2024

    CVE-2023-32315

    Openfire administration console authentication bypass

    Last Modified: Oct 24, 2025
    Published: May 26, 2023
    Items Per Page
    Igniterealtime Vulnerabilities & Security CVEs | CVE-DB