Skip to main content

Vendor/product archive

apache / commons_beanutils CVEs

Beta · best-effort

4 CVEs tagged to apache / commons_beanutils0 Critical, 4 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2025-48734

Published May 28, 2025

Improper Access Control vulnerability in Apache Commons. A special BeanIntrospector class was added in version 1.9.2. This can be used to stop attackers from using the declared…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2014-0114

Published Apr 30, 2014

Apache Commons BeanUtils, as distributed in lib/commons-beanutils-1.8.0.jar in Apache Struts 1.x through 1.3.10 and in other products requiring commons-beanutils through 1.9.2, do…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-1547

Published Mar 30, 2006

ActionForm in Apache Software Foundation (ASF) Struts before 1.2.9 with BeanUtils 1.7 allows remote attackers to cause a denial of service via a multipart/form-data encoded form w…

CVSS 7.5 · High
evidence mentions
2
Buzz score
42.5
KEV listed
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1