Where
-Infinity
0

Apache OpenMeetingsApache OpenMeetings: Login Credentials Passed via GET Query Parameters

Risk 46
Severity
7.5
First published (updated )

Apache OpenMeetingsApache OpenMeetings: Hardcoded Remember-Me Cookie Encryption Key and Salt

Risk 46
Severity
7.5
First published (updated )

oss-secCVE-2026-34020: Apache OpenMeetings: Login Cdentials Passed via GET Query Parameters

First published (updated )

oss-secCVE-2026-33266: Apache OpenMeetings: Hardcoded member-Me Cookie Encryption Key and Salt

First published (updated )

Apache OpenMeetingsApache OpenMeetings: Insufficient checks in FileWebService

Risk 24
Severity
4.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

oss-secCVE-2026-33005: Apache OpenMeetings: Insufficient checks in FileWebService

First published (updated )

maven/org.apache.openmeetings:openmeetings-parentApache OpenMeetings: Deserialisation of untrusted data in cluster mode

Risk 91
Severity
9.8
First published (updated )

CVE-2024-54676: Apache OpenMeetings: Deserialisation of untrusted data in cluster mode

First published (updated )

Apache OpenMeetingsApache OpenMeetings: insufficient check of invitation hash

Risk 27
Severity
5.3
First published (updated )

Apache OpenMeetingsApache OpenMeetings: allows bypass authentication

Risk 77
Severity
8.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Apache OpenMeetingsApache OpenMeetings: allows null-byte Injection

Risk 68
Severity
7.2
First published (updated )

Apache OpenMeetingsApache OpenMeetings: allows user impersonation

Risk 86
Severity
9.8
First published (updated )

Apache OpenMeetingsApache OpenMeetings: bandwidth can be overloaded with public web service

Risk 43
Severity
7.5
First published (updated )

Apache OpenMeetingsAttackers can use public NetTest web service of Apache OpenMeetings 4.0.0-5.0.0 to organize denial o…

Risk 43
Severity
7.5
First published (updated )

Apache OpenMeetingsIn Apache OpenMeetings 3.0.0 - 4.0.1, CRUD operations on privileged users are not password protected…

Risk 38
Severity
6.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Apache OpenMeetingsApache OpenMeetings before 3.1.2 is vulnerable to Remote Code Execution via RMI deserialization atta…

Risk 87
Severity
9.8
First published (updated )

Apache OpenMeetingsInfoleak

Risk 43
Severity
7.5
First published (updated )

Apache OpenMeetingsApache OpenMeetings 3.2.0 is vulnerable to parameter manipulation attacks, as a result attacker has …

Risk 54
Severity
8.2
First published (updated )

Apache OpenMeetingsSQL Injection

Risk 79
Severity
8.8
First published (updated )

Apache OpenMeetingsApache OpenMeetings 1.0.0 has an overly permissive crossdomain.xml file. This allows for flash conte…

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Apache OpenMeetingsWeak Encryption

Risk 86
Severity
9.8
First published (updated )

Apache OpenMeetingsApache OpenMeetings 1.0.0 responds to the following insecure HTTP methods: PUT, DELETE, HEAD, and PA…

Risk 27
Severity
5.3
First published (updated )

Apache OpenMeetingsXSS

Risk 38
Severity
6.1
First published (updated )

Apache OpenMeetingsApache OpenMeetings 1.0.0 updates user password in insecure manner.

Risk 43
Severity
7.5
First published (updated )

Apache OpenMeetingsApache OpenMeetings 1.0.0 doesn't check contents of files being uploaded. An attacker can cause a de…

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Apache OpenMeetingsCSRF, XSS

Risk 77
Severity
8.8
First published (updated )

Apache OpenMeetingsXEE

Risk 82
Severity
10
First published (updated )

Apache OpenMeetingsXSS

Risk 38
Severity
6.1
First published (updated )

Apache OpenMeetingsPath Traversal

Risk 38
Severity
6.5
First published (updated )

Apache OpenMeetingsInfoleak

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203