Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Apache CXF — Vulnerabilities & Security Advisories 22

All 22 CVE vulnerabilities found in Apache CXF, with AI-generated Chinese analysis, references, and POCs.

Vendor: Apache Software Foundation

CVE IDTitleCVSSSeverityPublished
CVE-2025-48913 Apache CXF: Untrusted JMS configuration can lead to RCE CWE-20 9.8 -2025-08-08
CVE-2025-48795 Apache CXF: Denial of Service and sensitive data exposure in logs CWE-400 5.5 -2025-07-15
CVE-2025-23184 Apache CXF: Denial of Service vulnerability with temporary files CWE-400 5.9 Medium2025-01-21
CVE-2024-41172 Apache CXF: Unrestricted memory consumption in CXF HTTP clients CWE-401 7.5 -2024-07-19
CVE-2024-32007 Apache CXF Denial of Service vulnerability in JOSE CWE-400 7.5 -2024-07-19
CVE-2024-29736 Apache CXF: SSRF vulnerability via WADL stylesheet parameter CWE-918 9.1 -2024-07-19
CVE-2024-28752 Apache CXF SSRF Vulnerability using the Aegis databinding CWE-918 9.1 -2024-03-15
CVE-2022-46364 Apache CXF SSRF Vulnerability CWE-918 9.1 -2022-12-13
CVE-2022-46363 Apache CXF directory listing / code exfiltration CWE-20 9.1 -2022-12-13
CVE-2021-30468 Apache CXF Denial of service vulnerability in parsing JSON via JsonMapObjectReaderWriter CWE-400 7.5 -2021-06-16
CVE-2021-22696 OAuth 2 authorization service vulnerable to DDos attacks CWE-918 9.1 -2021-04-02
CVE-2020-13954 Apache CXF Reflected XSS in the services listing page via the styleSheetPath CWE-79 6.1 -2020-11-12
CVE-2020-1954 Apache CXF 信息泄露漏洞 5.9 -2020-04-01
CVE-2019-12419 Apache CXF 授权问题漏洞 9.8 -2019-11-06
CVE-2019-12406 Apache CXF 资源管理错误漏洞 6.5 -2019-11-06
CVE-2018-8039 Apache CXF 安全特征问题漏洞 8.1 -2018-07-02
CVE-2017-12624 Apache CXF 安全漏洞 6.5 -2017-11-14
CVE-2017-3156 Apache CXF 信息泄露漏洞 7.5 -2017-08-10
CVE-2016-8739 Apache CXF JAX-RS 安全漏洞 9.1 -2017-08-10
CVE-2016-6812 Apache CXF 跨站脚本漏洞 7.1 -2017-08-10
CVE-2017-5656 Apache CXF 安全漏洞 7.5 -2017-04-18
CVE-2017-5653 Apache CXF JAX-RS XML Security streaming客户端安全漏洞 7.5 -2017-04-18

All 22 known CVE vulnerabilities affecting Apache CXF with full Chinese analysis, references, and POCs where available.