Skip to main content

Vendor/product archive

eclipse / hawkbit CVEs

Beta · best-effort

3 CVEs tagged to eclipse / hawkbit0 Critical, 1 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2026-16454

Published Jul 21, 2026

In Eclipse hawkBit versions 1.0.3 and prior, a privilege escalation vulnerability (CWE-284 / CWE-862) has been identified in the Direct Device Integration (DDI) Controller. Thi…

CVSS 4.3 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2020-27219

Published Jan 14, 2021

In all version of Eclipse Hawkbit prior to 0.3.0M7, the HTTP 404 (Not Found) JSON response body returned by the REST API may contain unsafe characters within the path attribute. S…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-10240

Published Apr 3, 2019

Eclipse hawkBit versions prior to 0.3.0M2 resolved Maven build artifacts for the Vaadin based UI over HTTP instead of HTTPS. Any of these dependent artifacts could have been malic…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1