13 known vulnerabilities, worst severity CRITICAL.
cvss
9.8
how bad it is if exploited, out of 10
epss
2.4%
chance of exploitation in the next 30 days
xyz score
4.0
CyberXYZ composite, out of 10
fig. 01 — GHSA-x3x3-qwjq-8gj4, the advisory selected below
// advisories
GHSA-x3x3-qwjq-8gj4
CRITICALCVE-2022-46364
A SSRF vulnerability in parsing the href attribute of XOP:Include in MTOM requests in versions of Apache CXF before 3.5.5 and 3.4.10 allows an attacker to perform SSRF style attacks on webservices that take at least one parameter of any type.