Apache Solr是美国阿帕奇(Apache)基金会的一款基于Lucene(一款全文搜索引擎)的搜索服务器。该产品支持层面搜索、垂直搜索、高亮显示搜索结果等。 Apache Solr 9.4.0版本至9.10.1版本和10.0.0版本存在安全漏洞,该漏洞源于硬编码凭据,可能导致远程攻击者通过公开已知的默认凭据获得集群的完全管理访问权限。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Apache Software Foundation | Apache Solr | 9.4.0≤ 9.10.1 |
affected |
10.0.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Apache Software Foundation | Apache Solr | 9.4.0 ~ 9.10.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Apache Solr 9.4.0 through 9.10.1 and 10.0.0 contain a hardcoded credentials vulnerability caused by default Basic Authentication template users in bin/solr auth enable, letting remote attackers gain full administrative access. Exploit requires use of default template users. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2026/CVE-2026-44825.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2026-48827 | 7.1 HIGH | Apache MINA SSHD: Path traversal in org.apache.sshd:sshd-git |
| CVE-2026-42359 | Apache Airflow: Authenticated RCE via XCom PATCH endpoint — XComUpdateBody missing FORBIDD | |
| CVE-2026-49328 | Apache Fesod (Incubating): Improper validation of user-supplied URLs leading to SSRF | |
| CVE-2026-49361 | Apache Fluss Netty Frame Decoder Memory Exhaustion Vulnerability | |
| CVE-2026-40861 | Apache Airflow: Arbitrary File Read via Log Symlink following in FileTaskHandler | |
| CVE-2026-40961 | Apache Airflow: Open Redirect Bypass Vulnerability | |
| CVE-2026-40963 | Apache Airflow: DAG authorization bypass on /ui/structure/structure_data | |
| CVE-2026-41014 | Apache Airflow: per-DAG RBAC bypass on /ui/partitioned_dag_runs endpoints | |
| CVE-2026-49267 | Apache Airflow: No certificate validation on SMTP STARTTLS connections | |
| CVE-2026-41017 | Apache Airflow: JWT cookie missing Secure flag in JWTRefreshMiddleware behind HTTPS-termin | |
| CVE-2026-41084 | Apache Airflow: API authorization bypass: bulk TaskInstances allows cross-DAG mutation | |
| CVE-2026-42252 | Apache Airflow: BashOperator Jinja2 injection via dag_run.conf — low-privilege user patter | |
| CVE-2026-42360 | Apache Airflow: Rendered template truncation bypasses nested sensitive-key masking | |
| CVE-2026-42358 | Apache Airflow: Variable masker depth-limit bypass returns cleartext nested secrets | |
| CVE-2026-45192 | Apache Airflow: Incomplete Redaction of Sensitive Fields in Connection Extra API Response | |
| CVE-2026-45360 | Apache Airflow: Arbitrary import in custom deadline-reference deserialization | |
| CVE-2026-45426 | Apache Airflow: Log server JWT authorization bypass via Python lstrip() character strippin | |
| CVE-2026-46764 | Apache Airflow: Event Log detail endpoint bypasses DAG-scoped event log permission filter | |
| CVE-2026-48726 | Apache Airflow: revoke_token() unreachable in FabAuthManager / KeycloakAuthManager logout | |
| CVE-2026-49298 | Apache Airflow: JWT Token Exposure in KubernetesExecutor Command-Line Arguments |
Showing top 20 of 28 CVEs. View all on vendor page → →
No comments yet