📦 Avro

by Apache

🔍 What is Avro?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-33042

HIGH CVSS 7.3 Feb 13, 2026

This vulnerability allows remote code execution when Apache Avro Java SDK processes untrusted Avro schemas. Attackers can inject malicious code that gets executed during specific record generation. Al...

CVE-2024-47561

HIGH CVSS 7.3 Oct 3, 2024

This vulnerability in Apache Avro's Java SDK allows attackers to execute arbitrary code by exploiting schema parsing flaws. It affects all users of Apache Avro versions 1.11.3 and earlier. The vulnera...

CVE-2023-39410

HIGH CVSS 7.5 Sep 29, 2023

This vulnerability in Apache Avro Java SDK allows attackers to cause out-of-memory conditions by sending specially crafted data during deserialization. It affects Java applications using Apache Avro u...

CVE-2021-43045

HIGH CVSS 7.5 Jan 6, 2022

This vulnerability in Apache Avro's .NET SDK allows attackers to cause denial-of-service by forcing excessive resource allocation. It affects .NET applications using Apache Avro version 1.10.2 and ear...