Product
apache olingo
4 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2020-1925
CVE-2019-17555
CVE-2019-17556
CVE-2019-17554
>= 4.0.0 and <= 4.7.0
Apache Olingo versions 4.0.0 to 4.7.0 provide the AsyncRequestWrapperImpl class which reads a URL from the Location header, and th
>= 4.0.0 and <= 4.6.0
The AsyncResponseWrapperImpl class in Apache Olingo versions 4.0.0 to 4.6.0 reads the Retry-After header and passes it to the Thre
>= 4.0.0 and <= 4.6.0
Apache Olingo versions 4.0.0 to 4.6.0 provide the AbstractService class, which is public API, uses ObjectInputStream and doesn't c
>= 4.0.0 and <= 4.6.0
The XML content type entity deserializer in Apache Olingo versions 4.0.0 to 4.6.0 is not configured to deny the resolution of exte