Apache Lucy是美国Apache基金会的一个开发框架。 Apache Lucy存在资源管理错误漏洞,该漏洞源于不受控制的递归。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Apache Software Foundation | Apache Lucy | < 0.8.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Apache Software Foundation | Apache Lucy | 0 ~ 0.8.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-66276 | Apache Qpid Proton-J: Unbounded disposition range handling can lead to denial of service | |
| CVE-2026-60053 | Apache Answer: Residual Administrative API Key Access After Role or Account Revocation | |
| CVE-2026-60023 | Apache Answer: Unauthorized disclosure of deleted or pending answer content | |
| CVE-2026-50749 | Apache Answer: Missing authorization in revision audit reject allows authenticated users t | |
| CVE-2026-48912 | Apache Answer: Improper authorization in avatar update cleanup allows authenticated users | |
| CVE-2026-48911 | Apache Answer: Unauthenticated OAuth Email-Binding Account Takeover via Existing User Conf | |
| CVE-2026-48834 | Apache Answer: Denial of service via crafted Accept-Language header parsing | |
| CVE-2026-61486 | Apache Lucy: stack-buffer-overflow in JSON parser error reporter on malformed input | |
| CVE-2026-61484 | Apache Lucy: LucyX::Remote::SearchServer unauthenticated remote Storable::thaw -> RCE/DoS | |
| CVE-2026-68080 | Apache Qpid Broker-J: Unbounded echo flow responses can lead to denial of service | |
| CVE-2026-67592 | Apache Qpid ProtonJ2: Unable to govern the maximum number of transfer frames per incoming | |
| CVE-2026-67555 | Apache Qpid Proton Dotnet: Unable to govern the maximum number of transfer frames per inco | |
| CVE-2026-68078 | Apache Qpid Broker-J: Unable to govern the maximum number of transfer frames per incoming | |
| CVE-2026-66277 | Apache Qpid Proton-J: Unable to govern the maximum number of transfer frames per incoming | |
| CVE-2026-67554 | Apache Qpid Proton Dotnet: Unbounded disposition range handling can lead to denial of serv | |
| CVE-2026-68077 | Apache Qpid Broker-J: Unbounded disposition range handling can lead to denial of service | |
| CVE-2026-66257 | Apache Qpid Proton-J: Unbounded symbol value caching can lead to pre-authentication resour | |
| CVE-2026-67591 | Apache Qpid ProtonJ2: Incoming session flow control window can be exceeded | |
| CVE-2026-67553 | Apache Qpid Proton Dotnet: Incoming session flow control window can be exceeded | |
| CVE-2026-68075 | Apache Qpid Broker-J: Incoming session flow control window can be exceeded |
Showing top 20 of 33 CVEs. View all on vendor page → →
No comments yet