Apache

Security Scorecard

Score

9F

Total CVEs

943

Patch Rate

6%

54 patched

Avg Response

275d

days to patch

Critical Gaps

21

exploitable, no detection

Severity Breakdown

Critical4
High19
Medium67
Low0

Patch Status

Patched54 (6%)
Partial/Workaround5 (1%)
Unpatched884 (94%)

CVEs (949)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-26866Hugegraph Raft Node ExploitHIGH8.81dPatched
CVE-2025-58130Apache Fineract Insufficiently Protected CredentialsCRITICAL9.11dPatched
CVE-2025-58137Apache Fineract BypassHIGH8.11dPatched
CVE-2025-54981StreamPark Encryption VulnerabilityHIGH7.51dPatched
CVE-2025-53960Apache StreamPark Encryption Key WeaknessMEDIUM5.91dPatched
CVE-2025-23408Apache Fineract Weak Password Requirements VulnerabilityMEDIUM6.54dPatched
CVE-2025-55753Apache HTTP Server ACME Backoff Timer ExploitHIGH7.5-Partial
CVE-2025-65082Apache HTTP Server VulnerabilityMEDIUM6.5-Partial
CVE-2025-66200Apache HTTPD VulnerabilityMEDIUM5.4-Partial
CVE-2025-66516Apache Tika XXE VulnerabilityCRITICAL9.814dUnpatched