📦 Eventmesh

by Apache

🔍 What is Eventmesh?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-56180

CRITICAL CVSS 9.8 Feb 14, 2025

This vulnerability allows attackers to achieve remote code execution on Apache EventMesh servers by sending malicious messages that trigger unsafe deserialization via the Hessian RPC protocol. It affe...

CVE-2024-39954

MEDIUM CVSS 6.3 Aug 20, 2025

This CVE describes a Server-Side Request Forgery (SSRF) vulnerability in the eventmesh-runtime module's WebhookUtil.java component. Attackers can exploit this to make the server send requests to inter...