- How many CVEs does eclipse-ee4j have?
- eclipse-ee4j has 27 published CVE records since 2018, including 15 in the last two years.
- How many eclipse-ee4j CVEs are in CISA KEV?
- None of eclipse-ee4j's CVEs are currently listed in CISA's Known Exploited Vulnerabilities catalog.
- Which eclipse-ee4j products have the most CVEs?
- The eclipse-ee4j products with the most published CVEs are glassfish, org.glassfish.main.admingui:console-common, mojarra, parsson, jersey.
- What are the most common weakness types in eclipse-ee4j CVEs?
- eclipse-ee4j's CVEs most often map to these CWE weakness types: CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')), CWE-22 (Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')), CWE-20 (Improper Input Validation), CWE-918 (Server-Side Request Forgery (SSRF)).
- Are there public exploits for eclipse-ee4j vulnerabilities?
- Yes — 1 of eclipse-ee4j's CVEs have a known public exploit.
- How many critical eclipse-ee4j vulnerabilities are there?
- eclipse-ee4j has 7 critical and 8 high-severity CVEs.
- What is the average severity of eclipse-ee4j CVEs?
- The average CVSS base score across eclipse-ee4j's scored CVEs is 7.4.