Skip to main content

Vendor/product archive

apache / uniffle CVEs

Beta · best-effort

1 CVEs tagged to apache / uniffle1 Critical, 0 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2025-68637

Published Jan 7, 2026

The Uniffle HTTP client is configured to trust all SSL certificates and disables hostname verification by default. This insecure configuration exposes all REST API communication…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-1 of 1 CVEsPage 1 of 1