13 known vulnerabilities, worst severity CRITICAL.
cvss
9.0
how bad it is if exploited, out of 10
epss
3.6%
chance of exploitation in the next 30 days
xyz score
4.0
CyberXYZ composite, out of 10
fig. 01 — GHSA-mq8p-h798-xcrp, the advisory selected below
// advisories
GHSA-mq8p-h798-xcrp
CRITICALCVE-2017-15718
The YARN NodeManager in Apache Hadoop 2.7.3 and 2.7.4 can leak the password for credential store provider used by the NodeManager to YARN Applications.