Apache

Security Scorecard

Score

18F

Total CVEs

943

Patch Rate

0%

2 patched

Avg Response

-

days to patch

Critical Gaps

21

exploitable, no detection

Severity Breakdown

Critical4
High19
Medium67
Low0

Patch Status

Patched2 (0%)
Partial/Workaround5 (1%)
Unpatched936 (99%)

CVEs (949)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-26866Hugegraph Raft Node ExploitHIGH8.81dUnpatched
CVE-2025-58130Apache Fineract Insufficiently Protected CredentialsCRITICAL9.11dUnpatched
CVE-2025-58137Apache Fineract BypassHIGH8.11dUnpatched
CVE-2025-54981StreamPark Encryption VulnerabilityHIGH7.51dUnpatched
CVE-2025-53960Apache StreamPark Encryption Key WeaknessMEDIUM5.91dUnpatched
CVE-2025-23408Apache Fineract Weak Password Requirements VulnerabilityMEDIUM6.54dUnpatched
CVE-2025-55753Apache HTTP Server ACME Backoff Timer ExploitHIGH7.5-Partial
CVE-2025-65082Apache HTTP Server VulnerabilityMEDIUM6.5-Partial
CVE-2025-66200Apache HTTPD VulnerabilityMEDIUM5.4-Partial
CVE-2025-66516Apache Tika XXE VulnerabilityCRITICAL9.814dUnpatched