Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

The Eclipse Foundation — Vulnerabilities & Security Advisories 101

Browse all 101 CVE security advisories affecting The Eclipse Foundation. AI-powered Chinese analysis, POCs, and references for each vulnerability.

The Eclipse Foundation operates as a non-profit organization managing open-source software projects, primarily serving developers through widely adopted frameworks like Eclipse IDE, Jakarta EE, and OSGi. Its core business involves stewarding these technologies, which are integral to enterprise Java development and IoT ecosystems. Historically, vulnerabilities within its ecosystem have frequently involved remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from complex plugin architectures or legacy codebases. While the Foundation itself does not develop all software, its projects have faced notable security incidents, including critical flaws in Eclipse IDE components that allowed unauthorized access or system compromise. With 101 CVEs currently on record, the organization emphasizes community-driven security reviews and transparent disclosure processes to mitigate risks. These efforts aim to maintain trust among millions of users who rely on its tools for mission-critical applications, ensuring that security patches are distributed promptly to address identified weaknesses in its extensive portfolio of open-source solutions.

Found 23 results / 101 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2022-2191 Eclipse Jetty 安全漏洞 — Eclipse Jetty CWE-404 7.5 High 2022-07-07
CVE-2022-2047 Eclipse Jetty 输入验证错误漏洞 — Eclipse Jetty CWE-20 2.7 Low 2022-07-07
CVE-2022-2048 Eclipse Jetty 安全漏洞 — Eclipse Jetty CWE-410 7.5 High 2022-07-07
CVE-2021-34429 Eclipse Jetty 安全漏洞 — Eclipse Jetty CWE-200 5.3 Medium 2021-07-15
CVE-2021-34428 Eclipse Jetty 代码问题漏洞 — Eclipse Jetty CWE-613 2.9 Low 2021-06-22
CVE-2021-28169 Eclipse Jetty 安全漏洞 — Eclipse Jetty CWE-200 5.3 Medium 2021-06-09
CVE-2021-28165 Eclipse Jetty 资源管理错误漏洞 — Eclipse Jetty CWE-400 7.5 High 2021-04-01
CVE-2021-28164 Eclipse Jetty 安全漏洞 — Eclipse Jetty CWE-200 5.3 Medium 2021-04-01
CVE-2021-28163 Eclipse Jetty 后置链接漏洞 — Eclipse Jetty CWE-200 2.7 Low 2021-04-01
CVE-2020-27223 Eclipse Jetty 资源管理错误漏洞 — Eclipse Jetty CWE-407 5.2 Medium 2021-02-26
CVE-2020-27218 Eclipse Jetty 安全漏洞 — Eclipse Jetty CWE-226 4.8 - 2020-11-28
CVE-2020-27216 Eclipse Jetty 安全漏洞 — Eclipse Jetty CWE-378 5.8 - 2020-10-23
CVE-2019-17638 Eclipse Jetty 安全漏洞 — Eclipse Jetty CWE-672 9.4 - 2020-07-09
CVE-2019-17632 Eclipse Jetty 跨站脚本漏洞 — Eclipse Jetty CWE-79 5.8 - 2019-11-25
CVE-2019-10247 Eclipse Jetty 信息泄露漏洞 — Eclipse Jetty CWE-213 5.3 - 2019-04-22
CVE-2019-10246 Eclipse Jetty 信息泄露漏洞 — Eclipse Jetty CWE-213 5.3 - 2019-04-22
CVE-2019-10241 Eclipse Jetty 跨站脚本漏洞 — Eclipse Jetty CWE-79 6.1 - 2019-04-22
CVE-2018-12545 Eclipse Jetty 输入验证错误漏洞 — Eclipse Jetty CWE-400 7.5 - 2019-03-27
CVE-2018-12536 Eclipse Jetty Server 信息泄露漏洞 — Eclipse Jetty CWE-209 5.3 - 2018-06-27
CVE-2017-7658 Eclipse Jetty Server 环境问题漏洞 — Eclipse Jetty CWE-444 9.8 - 2018-06-26
CVE-2017-7657 Eclipse Jetty 环境问题漏洞 — Eclipse Jetty CWE-444 9.8 - 2018-06-26
CVE-2017-7656 Eclipse Jetty 安全漏洞 — Eclipse Jetty CWE-444 6.5 - 2018-06-26
CVE-2018-12538 Eclipse Jetty 授权问题漏洞 — Eclipse Jetty CWE-6 8.3 - 2018-06-22

This page lists every published CVE security advisory associated with The Eclipse Foundation. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.