Data Integrator
Vendor:
First CVE: Oct 25, 2016 · Active for 9 years
37
Total CVEs
More Total CVEs than 97% of tracked products
5.3
Avg CVEs / Year
Higher CVE frequency than 89% of tracked products
7.4
Avg CVSS
Higher Avg CVSS than 49% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Data Integrator over time
Volume of CVEsAvg CVSS Base Score
First CVE
Oct 25, 2016
9 years ago
Most Recent CVE
Jun 16, 2026
38 days ago
CVE Severity & Scoring
Data Integrator37 CVEs
11%
22%
46%
22%
All CVEs352,294 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local2 (5.4%)
Network35 (94.6%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low19 (51.4%)
High18 (48.6%)
Unknown0 (0.0%)
User Interaction
None32 (86.5%)
Unknown0 (0.0%)
Required5 (13.5%)
Privileges Required
Low7 (18.9%)
High0 (0.0%)
None30 (81.1%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (37 CVEs).
37 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-45105MEDIUM Apache Log4j2 versions 2.0-alpha1 through 2.16.0 (excluding 2.12.3 and 2.3.1) did not protect from uncontrolled recursion from self-referential lookups. This allows an attacker wit | Dec 18, 2021 | 5.9 | 76 | NO | NO |
CVE-2018-7318CRITICAL SQL Injection exists in the CheckList 1.1.1 component for Joomla! via the title_search, tag_search, name_search, description_search, or filter_order parameter. | Feb 22, 2018 | 9.8 | 44 | NO | YES |
CVE-2018-8013CRITICAL In Apache Batik 1.x before 1.10, when deserializing subclass of `AbstractDocument`, the class takes a string from the inputStream as the class name which then use it to call the no | May 24, 2018 | 9.8 | 39 | NO | NO |
CVE-2019-17195CRITICAL Connect2id Nimbus JOSE+JWT before v7.9 can throw various uncaught exceptions while parsing a JWT, which could result in an application crash (potential information disclosure) or a | Oct 15, 2019 | 9.8 | 38 | NO | NO |
CVE-2020-36179HIGH FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapte | Jan 7, 2021 | 8.1 | 36 | NO | NO |
CVE-2017-5611CRITICAL SQL injection vulnerability in wp-includes/class-wp-query.php in WP_Query in WordPress before 4.7.2 allows remote attackers to execute arbitrary SQL commands by leveraging the pres | Jan 30, 2017 | 9.8 | 34 | NO | NO |
CVE-2018-1000613CRITICAL Legion of the Bouncy Castle Legion of the Bouncy Castle Java Cryptography APIs 1.58 up to but not including 1.60 contains a CWE-470: Use of Externally-Controlled Input to Select Cl | Jul 9, 2018 | 9.8 | 32 | NO | NO |
CVE-2020-35728HIGH FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDICo | Dec 27, 2020 | 8.1 | 31 | NO | NO |
CVE-2020-36188HIGH FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDICo | Jan 6, 2021 | 8.1 | 30 | NO | NO |
CVE-2020-36184HIGH FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolD | Jan 6, 2021 | 8.1 | 30 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (37 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
2.7% of CVEs· 88th percentile
Social Chatter
Signals from CVEs in this product scope (37 CVEs).
Media Mentions
Signals from CVEs in this product scope (37 CVEs).
Top CNAs Publishing CVEs For Data Integrator
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 14.1.2.0.0 | 1 | 8.3 | 0.4% | 0 | 0 |
| 12.2.1.4.0 | 31 | 7.7 | 9.3% | 0 | 1 |
| 12.2.1.3.0 | 21 | 7.2 | 9.7% | 0 | 1 |
| 12.2.1.1.0 | 2 | 4.4 | 1.5% | 0 | 0 |
| 12.2.1.0.0 | 2 | 4.4 | 1.5% | 0 | 0 |
| 12.1.3.0.0 | 2 | 4.4 | 1.5% | 0 | 0 |
| 12.1.2.0.0 | 1 | 3.1 | 1.3% | 0 | 0 |
| 11.1.1.9.0 | 7 | 7.1 | 4.0% | 0 | 1 |
| 11.1.1.7.0 | 2 | 4.4 | 1.5% | 0 | 0 |