CVE Tracker
Track known exploited vulnerabilities, CISA KEV alerts, and linked threat intelligence.
Showing 2 of 42 CVEs matching "Apache" · CISA KEV
CVE-2020-17530KEV
High
Forced Object-Graph Navigation Language (OGNL) evaluation in Apache Struts, when evaluated on raw user input in tag attributes, can lead to remote code execution.
ApacheEPSS 94.4%
CVE-2015-4852KEV
High
Oracle WebLogic Server contains a deserialization of untrusted data vulnerability within Apache Commons, which can allow for for remote code execution.
OracleEPSS 92.7%