Apache

Skywalking

3 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 5.16%
  • Published 18.07.2022 12:15:08
  • Last modified 21.11.2024 07:12:27

A vulnerability in Apache SkyWalking NodeJS Agent prior to 0.5.1. The vulnerability will cause NodeJS services that has this agent installed to be unavailable if the OAP is unhealthy and NodeJS agent can't establish the connection.

  • EPSS 5.76%
  • Published 05.08.2020 14:15:12
  • Last modified 21.11.2024 05:02:09

**Resolved** Only when using H2/MySQL/TiDB as Apache SkyWalking storage, there is a SQL injection vulnerability in the wildcard query cases.

  • EPSS 93.77%
  • Published 30.06.2020 15:15:10
  • Last modified 21.11.2024 05:40:44

**Resolved** When use H2/MySQL/TiDB as Apache SkyWalking storage, the metadata query through GraphQL protocol, there is a SQL injection vulnerability, which allows to access unpexcted data. Apache SkyWalking 6.0.0 to 6.6.0, 7.0.0 H2/MySQL/TiDB storag...