← Back to browse · API

CVE-2024-27348

Severity
CRITICAL
CVSS
9.8
EPSS
0.9921
Risk score
59.72
CISA KEV
Yes
PoC
No
Published
2024-04-22
Modified
2025-10-21
First seen
2026-08-07
Aliases
EUVD-2024-1059, GHSA-29RC-VQ7F-X335
Products
Apache Software Foundation:Apache HugeGraph-Server 1.0.0 <1.3.0, Apache:HugeGraph-Server
Sources
cisa.gov CVE-2024-27348
euvd EUVD-2024-1059

Description

RCE-Remote Command Execution vulnerability in Apache HugeGraph-Server.This issue affects Apache HugeGraph-Server: from 1.0.0 before 1.3.0 in Java8 & Java11 Users are recommended to upgrade to version 1.3.0 with Java11 & enable the Auth system, which fixes the issue.

References