apache-hop

Direct Vulnerabilities

Known vulnerabilities in the apache-hop package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
CVE-2026-13506

<2.19.0-r0
  • C
CVE-2026-8763

<2.19.0-r0
  • H
Algorithmic Complexity

<2.19.0-r0
  • C
Improper Check for Unusual or Exceptional Conditions

<2.19.0-r0
  • L
Resource Exhaustion

<2.19.0-r0
  • L
Information Exposure Through Caching

<2.19.0-r0
  • L
Improper Check for Certificate Revocation

<2.19.0-r0
  • H
Resource Exhaustion

<2.19.0-r0
  • L
Resource Exhaustion

<2.19.0-r0
  • L
Incomplete Blacklist

<2.19.0-r0
  • L
GHSA-mhm7-754m-9p8w

<2.19.0-r0
  • L
Resource Exhaustion

<2.19.0-r0
  • L
Use of Non-Canonical URL Paths for Authorization Decisions

<2.19.0-r0
  • L
CRLF Injection

<2.19.0-r0
  • L
Resource Exhaustion

<2.19.0-r0
  • L
CRLF Injection

<2.19.0-r0
  • L
Missing Release of Resource after Effective Lifetime

<2.19.0-r0
  • H
Resource Exhaustion

<2.19.0-r0
  • L
Time-of-check Time-of-use (TOCTOU)

<2.19.0-r0
  • L
Information Exposure

<2.19.0-r0
  • L
Memory Leak

<2.19.0-r0
  • H
Allocation of Resources Without Limits or Throttling

<2.19.0-r0
  • L
Improperly Controlled Modification of Dynamically-Determined Object Attributes

<2.19.0-r0
  • L
Improperly Controlled Modification of Dynamically-Determined Object Attributes

<2.19.0-r0
  • L
Missing Release of Resource after Effective Lifetime

<2.19.0-r0
  • L
Incorrect Authorization

<2.19.0-r0
  • L
Uncontrolled Recursion

<2.19.0-r0
  • L
Server-Side Request Forgery (SSRF)

<2.19.0-r0
  • L
Incorrect Authorization

<2.19.0-r0
  • L
Resource Exhaustion

<2.19.0-r0
  • L
Cross-site Scripting (XSS)

<2.19.0-r0
  • M
CRLF Injection

<2.19.0-r0
  • L
GHSA-r7wm-3cxj-wff9

<2.19.0-r0
  • L
CVE-2026-54399

<2.19.0-r0
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<2.19.0-r0
  • H
HTTP Request Smuggling

<2.19.0-r0
  • L
Incorrect Authorization

<2.19.0-r0
  • L
Resource Exhaustion

<2.19.0-r0
  • C
XML External Entity (XXE) Injection

<2.19.0-r0
  • L
Improper Input Validation

<2.19.0-r0
  • M
HTTP Request Smuggling

<2.19.0-r0
  • L
Improper Access Control

<2.19.0-r0
  • L
CVE-2026-54428

<2.19.0-r0
  • L
Resource Exhaustion

<2.19.0-r0
  • L
Resource Exhaustion

<2.19.0-r0
  • L
Incomplete Blacklist

<2.19.0-r0
  • L
Resource Exhaustion

<2.19.0-r0
  • C
Improper Handling of Alternate Encoding

<2.19.0-r0
  • L
NULL Pointer Dereference

<2.19.0-r0
  • L
Improper Encoding or Escaping of Output

<2.19.0-r0
  • L
Improperly Controlled Modification of Dynamically-Determined Object Attributes

<2.19.0-r0
  • L
Not Failing Securely ('Failing Open')

<2.19.0-r0
  • C
Improper Certificate Validation

<2.19.0-r0