CVE-2013-4366
critical
9.8
9.8
9y ago
Hostname verification in Apache HttpClient 4.3 was disabled by default
debian java apache
CVE-2014-3577
medium
—
5.8
12y ago
org.apache.http.conn.ssl.AbstractVerifier in Apache HttpComponents HttpClient before 4.3.5 and HttpAsyncClient before 4.0.2 does not properly verify that the server hostname matches a domain name in …
suse arch debian java +1
CVE-2020-13956
medium
—
5.5
5y ago
Cross-site scripting in Apache HttpClient
arch suse rockylinux debian +1
CVE-2015-5262
medium
—
4.3
11y ago
Denial of service vulnerability in org.apache.httpcomponents:httpclient
suse debian ubuntu fedora +2
CVE-2012-6153
medium
—
4.3
12y ago
Improper certificate validation in org.apache.httpcomponents:httpclient
debian java apache
CVE-2011-1498
medium
—
4.3
15y ago
Exposure of Sensitive Information to an Unauthorized Actor in Apache HttpClient
debian java apache