apache-polaris

Direct Vulnerabilities

Known vulnerabilities in the apache-polaris package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
Incorrect Authorization

<1.7.0-r0
  • L
CVE-2026-40984

<1.6.0-r0
  • L
CVE-2026-40983

<1.6.0-r0
  • L
GHSA-mfg7-5gfp-c4w3

<1.7.0-r0
  • H
Resource Exhaustion

<1.7.0-r0
  • L
CRLF Injection

<1.7.0-r0
  • L
Improper Access Control

<1.7.0-r0
  • M
CRLF Injection

<1.7.0-r0
  • L
Resource Exhaustion

<1.7.0-r0
  • M
HTTP Request Smuggling

<1.7.0-r0
  • H
HTTP Request Smuggling

<1.7.0-r0
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<1.7.0-r0
  • H
Resource Exhaustion

<1.7.0-r0
  • L
Resource Exhaustion

<1.7.0-r0
  • L
Not Failing Securely ('Failing Open')

<1.7.0-r0
  • L
Resource Exhaustion

<1.7.0-r0
  • H
Allocation of Resources Without Limits or Throttling

<1.7.0-r0
  • L
Improper Authentication

<1.6.0-r0
  • L
Improperly Controlled Modification of Dynamically-Determined Object Attributes

<1.6.0-r0
  • L
Incorrect Authorization

<1.6.0-r0
  • L
Information Exposure

<1.6.0-r0
  • L
Resource Exhaustion

<1.6.0-r0
  • H
HTTP Response Splitting

<1.6.0-r0
  • L
Use of Insufficiently Random Values

<1.6.0-r0
  • L
Integer Overflow or Wraparound

<1.6.0-r0
  • M
Allocation of Resources Without Limits or Throttling

<1.6.0-r0
  • H
Resource Exhaustion

<1.6.0-r0
  • L
CRLF Injection

<1.6.0-r0
  • M
Allocation of Resources Without Limits or Throttling

<1.6.0-r0
  • L
Incorrect Authorization

<1.6.0-r0
  • H
HTTP Request Smuggling

<1.6.0-r0
  • L
HTTP Request Smuggling

<1.6.0-r0
  • C
HTTP Request Smuggling

<1.6.0-r0
  • L
Incomplete Blacklist

*
  • L
Incomplete Blacklist

*
  • H
Out-of-bounds Read

<1.6.0-r0
  • C
HTTP Request Smuggling

<1.6.0-r0
  • H
Memory Leak

<1.6.0-r0
  • L
Improper Access Control

<1.6.0-r0
  • L
GHSA-2r2c-cx56-8933

*
  • L
Improper Check or Handling of Exceptional Conditions

<1.6.0-r0
  • C
Insufficient Verification of Data Authenticity

<1.6.0-r0
  • C
HTTP Request Smuggling

*
  • L
Allocation of Resources Without Limits or Throttling

<1.6.0-r0
  • C
Improper Input Validation

<1.6.0-r0
  • L
GHSA-47qp-hqvx-6r3f

*
  • L
Resource Exhaustion

<1.6.0-r0
  • L
Allocation of Resources Without Limits or Throttling

<1.6.0-r0
  • C
Insufficient Verification of Data Authenticity

<1.6.0-r0
  • L
Resource Exhaustion

<1.6.0-r0
  • L
Improper Verification of Cryptographic Signature

<1.6.0-r0