Package impact
Maven / org.apache.kafka:kafka-clients
| CVE | Severity | CVSS | Risk | Flags | OS | Vendor | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-33557 | unknown | — | — | 1mo ago | Apache Kafka does not validate JWT tokens in its OAUTHBEARER authentication implementation | |||
| CVE-2026-33558 | unknown | — | — | 1mo ago | Apache Kafka exposes sensitive information in its DEBUG logs | |||
| CVE-2026-35554 | unknown | — | — | 2mo ago | Apache Kafka Clients: Kafka Producer Message Corruption and Misrouting via Buffer Pool Race Condition | |||
| CVE-2025-27817 | unknown | — | — | 1y ago | Apache Kafka Client Arbitrary File Read and Server Side Request Forgery Vulnerability | |||
| CVE-2024-31141 | unknown | — | — | 2y ago | Apache Kafka Clients: Privilege escalation to filesystem read-access via automatic ConfigProvider | |||
| CVE-2017-12610 | unknown | — | — | 4y ago | Improper Authentication in Apache Kafka | |||
| CVE-2021-38153 | unknown | — | — | 5y ago | Observable Discrepancy in Apache Kafka |