MEDIUMMaven

druid-pac4j, Apache Druid extension, has Padding Oracle vulnerability

druid-pac4j, Apache Druid extension, has Padding Oracle vulnerability

CVE-2024-45384Published 1 year agoUpdated 5 days agoSource: OSV

Affected packages

  • org.apache.druid.extensions:druid-pac4j0.18.0 → 30.0.1

Exploit signal

Known exploited (CISA KEV)
No
EPSS score
EPSS percentile

EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.

druid-pac4j, Apache Druid extension, has Padding Oracle vulnerability | HackTribune