Org.apache.solr:solr-parent
6 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Org.apache.solr:solr-parent, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
Org.apache.solr:solr-parent CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 6 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical4
- High1
- Medium1
Latest CVEs
The 6 most recently published vulnerabilities affecting Org.apache.solr:solr-parent.
- CVE-2021-44548Apache Solr information disclosure vulnerability through DataImportHandler9.8
- CVE-2021-29943Apache Solr Unprivileged users may be able to perform unauthorized read/write to collections9.1
- CVE-2021-27905SSRF vulnerability with the Replication handler9.8
- CVE-2020-13957Apache Solr versions 6.6.0 to 6.6.6, 7.0.0 to 7.7.3 and 8.0.0 to 8.6.2 prevents some features considered dangerous (which could be used for remote code execution) to be configured in a ConfigSet th...9.8
- CVE-2020-13941Reported in SOLR-14515 (private) and fixed in SOLR-14561 (public), released in Solr version 8.6.0. The Replication handler (https://lucene.apache.org/solr/guide/8_6/index-replication.html#http-api-...8.8
- CVE-2018-11802In Apache Solr, the cluster can be partitioned into multiple collections and only a subset of nodes actually host any given collection. However, if a node receives a request for a collection it doe...4.3
Product grouping is registry-driven, with AI assist and human review. How it works