Vulnerabilities
Vulnerable Software
Hazelcast:  >> Hazelcast  >> 5.1  Security Vulnerabilities
In Hazelcast Platform through 5.3.4, a security issue exists within the SQL mapping for the CSV File Source connector. This issue arises from inadequate permission checking, which could enable unauthorized clients to access data from files stored on a member's filesystem.
CVSS Score
6.5
EPSS Score
0.005
Published
2024-02-16
In Hazelcast through 5.0.4, 5.1 through 5.1.6, and 5.2 through 5.2.3, configuration routines don't mask passwords in the member configuration properly. This allows Hazelcast Management Center users to view some of the secrets.
CVSS Score
4.3
EPSS Score
0.016
Published
2023-05-22
Improper Restriction of XML External Entity Reference in GitHub repository hazelcast/hazelcast in 5.1-BETA-1.
CVSS Score
7.3
EPSS Score
0.092
Published
2022-03-03


Contact Us

Shodan ® - All rights reserved