The Coherence Project maintains a distributed application infrastructure and caching platform centered on its Coherence product, which serves enterprise data-grid and in-memory computing workloads. Observed vulnerabilities cluster around improper input validation, reflecting the parsing demands of a distributed system handling untrusted data across network boundaries. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Coherence Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-20301MEDIUM An issue was discovered in Steve Pallen Coherence before 0.5.2 that is similar to a Mass Assignment vulnerability. In particular, "registration" endpoints (e.g., creating, editing, | Dec 20, 2018 | 6.5 | 22 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Coherence Project.
Media articles that mention a CVE ID that affects a product developed by Coherence Project — matched by CVE ID, not by vendor name.