Apache HugeGraph Vulnerability Exploited in Wild

July 17, 2024 at 07:06AM A CVE-2024-27348-affected Apache HugeGraph-Server vulnerability is being exploited in attacks, as reported by SecurityWeek. Based on the meeting notes, it appears that a recently patched Apache HugeGraph-Server vulnerability, identified as CVE-2024-27348, is being targeted in attacks. Additionally, there are reports of the vulnerability being exploited in the wild as indicated … Read more

Critical Apache HugeGraph Vulnerability Under Attack – Patch ASAP

July 17, 2024 at 01:42AM Threat actors are exploiting a critical security flaw in Apache HugeGraph-Server, enabling remote code execution attacks (CVE-2024-27348, CVSS score: 9.8). Users are urged to upgrade to version 1.3.0 with Java11 and enable the Auth system to fix the issue. Exploitation attempts are in the wild, emphasizing the urgency of applying … Read more

POC exploit code published for 9.8-rated Apache HugeGraph RCE flaw

June 6, 2024 at 09:26PM Apache HugeGraph version 1.3.0 addresses a critical vulnerability (CVE-2024-27348), allowing potential exploitation for remote command execution. Exploit codes for the flaw are available, so it’s crucial for Java 8 and 11 users to upgrade to the fixed version to prevent potential security breaches and unauthorized access. Based on the meeting … Read more