Org.opencastproject:opencast-kernel
7 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Org.opencastproject:opencast-kernel, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
Org.opencastproject:opencast-kernel CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 1 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 7 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- High2
- Medium5
Latest CVEs
The 7 most recently published vulnerabilities affecting Org.opencastproject:opencast-kernel.
- CVE-2025-54380Opencast still publishes global system account credentials6.5
- CVE-2021-32623Opencast vulnerable to billion laughs attack (XML bomb)8.1
- CVE-2020-26234Disabled Hostname Verification in OpenCast4.8
- CVE-2020-5206Authentication Bypass For Endpoints With Anonymous Access in OpenCast8.7
- CVE-2020-5231Opencast users with ROLE_COURSE_ADMIN can create new users4.8
- CVE-2020-5222Hard-Coded Key Used For Remember-me Token in OpenCast6.8
- CVE-2017-1000221In Opencast 2.2.3 and older if user names overlap, the Opencast search service used for publication to the media modules and players will handle the access control incorrectly so that users only ne...6.5
Product grouping is registry-driven, with AI assist and human review. How it works