Apache HertzBeat
cpe:2.3:a:apache:hertzbeat:*:*:*:*:*:*:*
- >= 1.7.1, < 1.8.0
A vulnerability allowing XPath injection has been identified in Apache HertzBeat versions 1.7.1 prior to 1.8.0. This issue arises from improper neutralization of data within XPath expressions, which can lead to uncontrolled resource consumption.
Exploitation of this vulnerability can cause uncontrolled resource consumption, potentially leading to a denial-of-service condition.
Users are advised to upgrade to Apache HertzBeat version 1.8.0, which addresses this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.