CVEs we hold for Eclipse
Records whose assigning authority named Eclipse as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-58465Eclipse Wakaama CoAP Block1 Handler Unbounded Memory Allocation DoSeclipse-wakaama wakaama
CVE-2026-18918OAuth 1.0 session-fixation chain via unauthenticated provisional-consumer registration and insecure v1_0Allowed defaultEclipse Lyo
CVE-2026-16454Privilege Escalation in Eclipse hawkBit DDI allows Tenant-Isolated Firmware ExfiltrationEclipse Foundation eclipse-hawkbit/hawkbit
CVE-2026-16441Eclipse OpenJ9 : Method resolution default method precedence failureEclipse Foundation OpenJ9
CVE-2026-16439Eclipse OpenJ9 : Using -Xtrace to trace method arguments can lead to buffer underflowEclipse Foundation OpenJ9
CVE-2026-16243Eclipse OMR : arraycmp SIMD implementation does not check if the number of bytes to compare is zeroEclipse OMR
CVE-2026-15704CWE-863: ABAC authorization bypass via trailing slash route normalization in Eclipse BaSyx Go ComponentsEclipse BaSyx Go Components
CVE-2025-55100Potential out-of-bounds read in _ux_host_class_audio10_sam_parse_func()Eclipse Foundation USBX
CVE-2025-55099Potential out-of-bounds read in _ux_host_class_audio_alternate_setting_locate()Eclipse Foundation USBX
CVE-2025-55098Potential out-of-bounds read in _ux_host_class_audio_device_type_get()Eclipse Foundation USBX
CVE-2025-55097Potential out-of-bounds read in _ux_host_class_audio_streaming_sampling_get()Eclipse Foundation USBX
CVE-2025-55096Inadequate bounds check and potential underflow in _ux_host_class_hid_report_descriptor_get()Eclipse Foundation NetX Duo
CVE-2025-55094Potential out-of-bounds read in _nx_icmpv6_validate_options()Eclipse Foundation NetX Duo
CVE-2025-55093Out of bound read and write in _nx_ipv4_packet_receive() when handling unicast DHCP messagesEclipse Foundation NetX Duo
CVE-2025-55090Potential out of bound read issue in _nx_ipv4_packet_receive() in NetX DuoEclipse Foundation NetX Duo
CVE-2025-55085Web http client: Unchecked Server-Side Malicious Packet IssueEclipse Foundation NetX Duo
CVE-2025-55084Out of bound read in _nx_secure_tls_proc_clienthello_supported_versions_extension()Eclipse Foundation NetX Duo
CVE-2025-55083Broken bounds check in Broken bounds check in _nx_secure_tls_process_clienthello_psk_extension()Eclipse Foundation NetX Duo
CVE-2025-55082Potential out of bound read and info leak in_nx_secure_tls_psk_identity_find()Eclipse Foundation NetX Duo
CVE-2025-55081Potential out of bound read in _nx_secure_tls_process_clienthello()Eclipse Foundation NetX Duo
CVE-2025-55078Incomplete validation of kernel object pointers in system callsEclipse Foundation ThreadX
CVE-2025-2515Bluechi: privilege escalation in bluechi via unrestricted cross-node systemd dependenciesEclipse Foundation BlueChi
CVE-2025-2260Eclipse ThreadX NetX Duo HTTP component server denial of serviceEclipse Foundation ThreadX
CVE-2025-2259Eclipse ThreadX NetX Duo component HTTP server single PUT request integer underflowEclipse Foundation ThreadX
CVE-2025-2258Eclipse ThreadX NetX Duo HTTP server single PUT request integer underflowEclipse Foundation ThreadX
CVE-2025-1007Improper Authorization in /user/namespace/{namespace}/detailsEclipse Foundation OpenVSX
CVE-2025-0728Eclipse ThreadX NetX Duo HTTP server single PUT request integer underflowEclipse Foundation ThreadX
CVE-2025-0727Eclipse ThreadX NetX Duo HTTP server single PUT request integer underflowEclipse Foundation ThreadX
CVE-2024-8642Eclipse EDC: Consumer pull transfer token validation checks not appliedEclipse EDC Connector
CVE-2024-8184Jetty ThreadLimitHandler.getRemote() vulnerable to remote DoS attacksEclipse Foundation Jetty
CVE-2024-5165Eclipse Ditto User Interface vulnerable to XSS due to Improper Neutralization of InputEclipse Ditto
CVE-2024-3933Eclipse Open J9 With -Xgc:concurrentScavenge on IBM Z, could write/read outside of a bufferEclipse Foundation Open J9
CVE-2024-2452Integer wraparound, under-allocation, and heap buffer overflow in Eclipse ThreadX NetX Duo __portable_aligned_alloc()Eclipse Foundation ThreadX
CVE-2024-2212Integer wraparounds, under-allocations, and heap buffer overflows in Eclipse ThreadX xQueueCreate() and…Eclipse Foundation ThreadX
CVE-2024-10917Eclipse OpenJ9 might return an incorrect value in JNI function GetStringUTFLengthEclipse Foundation Open J9
CVE-2024-10838Integer Underflow in DDS_Security_Deserialize_ methods may lead to OOB readEclipse Cyclone DDS
CVE-2024-10525Eclipse Mosquito: Heap Buffer Overflow in my_subscribe_callbackEclipse Foundation mosquitto
CVE-2023-5632Unconditionally adding an event to the epoll causes excessive CPU consumptionEclipse Mosquitto
CVE-2023-4759Improper handling of case insensitive filesystems in Eclipse JGit allows arbitrary file writeEclipse JGit
CVE-2023-26049Cookie parsing of quoted values can exfiltrate values from other cookies in Eclipse Jettyeclipse jetty.project
CVE-2023-26048OutOfMemoryError for large multipart without filename in Eclipse Jettyeclipse jetty.project
CVE-2022-39368Californium Failing DTLS handshakes causes Data Loss due to throttling blocking processing of recordseclipse-californium californium
CVE-2022-36022Some Deeplearning4J packages use unclaimed s3 bucket in tests and exampleseclipse deeplearning4j
CVE-2021-38443Eclipse CycloneDDS Improper Handling of Syntactically Invalid StructureEclipse CycloneDDS
189 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.