lucene-solr vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the lucene-solr package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • L
Server-Side Request Forgery (SSRF)

*
  • L
Improper Input Validation

*
  • L
Arbitrary Code Injection

*
  • H
Arbitrary Code Injection

<3.6.2+dfsg-10+deb9u3
  • L
Server-Side Request Forgery (SSRF)

*
  • H
XML External Entity (XXE) Injection

<3.6.2+dfsg-10+deb9u2
  • C
XML External Entity (XXE) Injection

<3.6.2+dfsg-10+deb9u1
  • H
Directory Traversal

<3.6.2+dfsg-10+deb9u1
  • H
CVE-2012-6612

<3.6.2+dfsg-2
  • M
Directory Traversal

<3.6.2+dfsg-2
  • M
CVE-2013-6407

<3.6.2+dfsg-2
  • M
CVE-2013-6408

<3.6.2+dfsg-2