Skip to main content

Vendor/product archive

apache / groovy CVEs

Beta · best-effort

3 CVEs tagged to apache / groovy2 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2016-6814

Published Jan 18, 2018

When an application with unsupported Codehaus versions of Groovy from 1.7.0 to 2.4.3, Apache Groovy 2.4.4 to 2.4.7 on classpath uses standard Java serialization mechanisms, e.g. t…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2015-3253

Published Aug 13, 2015

The MethodClosure class in runtime/MethodClosure.java in Apache Groovy 1.7.0 through 2.4.3 allows remote attackers to execute arbitrary code or cause a denial of service via a cra…

CVSS 9.8 · Critical
evidence mentions
3
Buzz score
18.9
Showing 1-3 of 3 CVEsPage 1 of 1