CVE-2019-10086
published 2019-08-20CVE-2019-10086: In Apache Commons Beanutils 1.9.2, a special BeanIntrospector class was added which allows suppressing the ability for an attacker to access the classloader…
PriorityP355high7.3CVSS 3.1
AVNACLPRNUINSUCLILAL
EPSS
28.84%
97.9th percentile
In Apache Commons Beanutils 1.9.2, a special BeanIntrospector class was added which allows suppressing the ability for an attacker to access the classloader via the class property available on all Java objects. We, however were not using this by default characteristic of the PropertyUtilsBean.
Affected
107 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | apache_commons_beanutils | — | — |
| apache | commons_beanutils | 1.0 – 1.9.3 | — |
| apache | nifi | — | — |
| apache | nifi | — | — |
| debian | commons-beanutils | < commons-beanutils 1.9.4-1 (bookworm) | commons-beanutils 1.9.4-1 (bookworm) |
| debian | debian_linux | — | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| opensuse | leap | — | — |
| opensuse | leap | — | — |
| oracle | agile_plm | — | — |
| oracle | agile_plm | — | — |
| oracle | agile_plm | — | — |
| oracle | agile_product_lifecycle_management_integration_pack | — | — |
| oracle | agile_product_lifecycle_management_integration_pack | — | — |
| oracle | application_testing_suite | — | — |
| oracle | banking_platform | — | — |
| oracle | banking_platform | — | — |
| oracle | banking_platform | — | — |
| oracle | blockchain_platform | < 21.1.2 | 21.1.2 |
| oracle | communications_billing_and_revenue_management | — | — |
| oracle | communications_billing_and_revenue_management | — | — |
| oracle | communications_billing_and_revenue_management_elastic_charging_engine | — | — |
| oracle | communications_billing_and_revenue_management_elastic_charging_engine | — | — |
| oracle | communications_cloud_native_core_console | — | — |
CVSS provenance
nvdv3.17.3HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.3HIGH
vendor_debian7.3HIGH
vendor_oracle7.3HIGH
vendor_redhat7.3HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Oracle
Oracle Oracle Communications Risk Matrix: Security (Apache Commons BeanUtils) — CVE-2019-10086
vendor_oracle·2024-07-15·CVSS 7.3
CVE-2019-10086 [HIGH] Oracle Oracle Communications Risk Matrix: Security (Apache Commons BeanUtils) — CVE-2019-10086
Oracle Oracle Communications Risk Matrix: Security (Apache Commons BeanUtils) vulnerability
CVE: CVE-2019-10086
CVSS: 7.3
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpujul2024 (JUL 2024)
Oracle
Oracle Oracle Hyperion Risk Matrix: Security (Apache Commons BeanUtils) — CVE-2019-10086
vendor_oracle·2024-01-15·CVSS 7.3
CVE-2019-10086 [HIGH] Oracle Oracle Hyperion Risk Matrix: Security (Apache Commons BeanUtils) — CVE-2019-10086
Oracle Oracle Hyperion Risk Matrix: Security (Apache Commons BeanUtils) vulnerability
CVE: CVE-2019-10086
CVSS: 7.3
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpujan2024 (JAN 2024)
Oracle
Oracle Oracle Fusion Middleware Risk Matrix: Third Party (Apache Commons BeanUtils) — CVE-2019-10086
vendor_oracle·2023-10-15·CVSS 7.3
CVE-2019-10086 [HIGH] Oracle Oracle Fusion Middleware Risk Matrix: Third Party (Apache Commons BeanUtils) — CVE-2019-10086
Oracle Oracle Fusion Middleware Risk Matrix: Third Party (Apache Commons BeanUtils) vulnerability
CVE: CVE-2019-10086
CVSS: 7.3
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpuoct2023 (OCT 2023)
Oracle
Oracle Oracle Commerce Risk Matrix: Experience Manager, Platform Services (Apache Commons BeanUtils) — CVE-2019-10086
vendor_oracle·2023-07-15·CVSS 7.3
CVE-2019-10086 [HIGH] Oracle Oracle Commerce Risk Matrix: Experience Manager, Platform Services (Apache Commons BeanUtils) — CVE-2019-10086
Oracle Oracle Commerce Risk Matrix: Experience Manager, Platform Services (Apache Commons BeanUtils) vulnerability
CVE: CVE-2019-10086
CVSS: 7.3
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpujul2023 (JUL 2023)
Oracle
Oracle Oracle Analytics Risk Matrix: Analytics Server (Apache Commons BeanUtils) — CVE-2019-10086
vendor_oracle·2023-04-15·CVSS 7.3
CVE-2019-10086 [HIGH] Oracle Oracle Analytics Risk Matrix: Analytics Server (Apache Commons BeanUtils) — CVE-2019-10086
Oracle Oracle Analytics Risk Matrix: Analytics Server (Apache Commons BeanUtils) vulnerability
CVE: CVE-2019-10086
CVSS: 7.3
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpuapr2023 (APR 2023)
Oracle
Oracle Oracle E-Business Suite Risk Matrix: Common Modules (Apache Commons BeanUtils) — CVE-2019-10086
vendor_oracle·2022-10-15·CVSS 7.3
CVE-2019-10086 [HIGH] Oracle Oracle E-Business Suite Risk Matrix: Common Modules (Apache Commons BeanUtils) — CVE-2019-10086
Oracle Oracle E-Business Suite Risk Matrix: Common Modules (Apache Commons BeanUtils) vulnerability
CVE: CVE-2019-10086
CVSS: 7.3
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpuoct2022 (OCT 2022)
Oracle
Oracle Oracle Health Sciences Applications Risk Matrix: User Interface (Apache Commons BeanUtils) — CVE-2019-10086
vendor_oracle·2022-07-15·CVSS 7.3
CVE-2019-10086 [HIGH] Oracle Oracle Health Sciences Applications Risk Matrix: User Interface (Apache Commons BeanUtils) — CVE-2019-10086
Oracle Oracle Health Sciences Applications Risk Matrix: User Interface (Apache Commons BeanUtils) vulnerability
CVE: CVE-2019-10086
CVSS: 7.3
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpujul2022 (JUL 2022)
Oracle
Oracle Oracle Blockchain Platform Risk Matrix: BCS Console (Apache Commons BeanUtils) — CVE-2019-10086
vendor_oracle·2022-04-15·CVSS 7.3
CVE-2019-10086 [HIGH] Oracle Oracle Blockchain Platform Risk Matrix: BCS Console (Apache Commons BeanUtils) — CVE-2019-10086
Oracle Oracle Blockchain Platform Risk Matrix: BCS Console (Apache Commons BeanUtils) vulnerability
CVE: CVE-2019-10086
CVSS: 7.3
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpuapr2022 (APR 2022)
Oracle
Oracle Oracle Communications Applications Risk Matrix: Message Store (Apache Commons BeanUtils) — CVE-2019-10086
vendor_oracle·2022-01-15·CVSS 7.3
CVE-2019-10086 [HIGH] Oracle Oracle Communications Applications Risk Matrix: Message Store (Apache Commons BeanUtils) — CVE-2019-10086
Oracle Oracle Communications Applications Risk Matrix: Message Store (Apache Commons BeanUtils) vulnerability
CVE: CVE-2019-10086
CVSS: 7.3
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpujan2022 (JAN 2022)
Oracle
Oracle Oracle Communications Applications Risk Matrix: Billing Care (Apache Commons BeanUtils) — CVE-2019-10086
vendor_oracle·2021-10-15·CVSS 7.3
CVE-2019-10086 [HIGH] Oracle Oracle Communications Applications Risk Matrix: Billing Care (Apache Commons BeanUtils) — CVE-2019-10086
Oracle Oracle Communications Applications Risk Matrix: Billing Care (Apache Commons BeanUtils) vulnerability
CVE: CVE-2019-10086
CVSS: 7.3
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpuoct2021 (OCT 2021)
Oracle
Oracle Oracle Communications Applications Risk Matrix: Transformation for PDC (Apache Commons BeanUtils) — CVE-2019-10086
vendor_oracle·2021-07-15·CVSS 7.3
CVE-2019-10086 [HIGH] Oracle Oracle Communications Applications Risk Matrix: Transformation for PDC (Apache Commons BeanUtils) — CVE-2019-10086
Oracle Oracle Communications Applications Risk Matrix: Transformation for PDC (Apache Commons BeanUtils) vulnerability
CVE: CVE-2019-10086
CVSS: 7.3
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpujul2021 (JUL 2021)
Oracle
Oracle Oracle Communications Applications Risk Matrix: Inventory Group (Apache Commons BeanUtils) — CVE-2019-10086
vendor_oracle·2021-04-15·CVSS 7.3
CVE-2019-10086 [HIGH] Oracle Oracle Communications Applications Risk Matrix: Inventory Group (Apache Commons BeanUtils) — CVE-2019-10086
Oracle Oracle Communications Applications Risk Matrix: Inventory Group (Apache Commons BeanUtils) vulnerability
CVE: CVE-2019-10086
CVSS: 7.3
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpuapr2021 (APR 2021)
Ubuntu
Apache Commons BeanUtils vulnerabilities
vendor_ubuntu·2021-03-15
CVE-2014-0114 Apache Commons BeanUtils vulnerabilities
Title: Apache Commons BeanUtils vulnerabilities
Summary: Apache Commons BeanUtils could be made to crash or run programs as your login if it
opened a specially crafted input.
It was discovered that Apache Commons BeanUtils improperly handled certain
input. An attacker could possibly use this vulnerability to cause a crash or execute arbitrary code.
Instructions: In general, a standard system update will make all the necessary changes.
Oracle
Oracle Oracle Communications Applications Risk Matrix: Coherence Query (Apache Commons BeanUtils) — CVE-2019-10086
vendor_oracle·2021-01-15·CVSS 7.3
CVE-2019-10086 [HIGH] Oracle Oracle Communications Applications Risk Matrix: Coherence Query (Apache Commons BeanUtils) — CVE-2019-10086
Oracle Oracle Communications Applications Risk Matrix: Coherence Query (Apache Commons BeanUtils) vulnerability
CVE: CVE-2019-10086
CVSS: 7.3
Protocol: TCP/IP
Remote exploit: Yes
Affected versions: Network
Advisory: cpujan2021 (JAN 2021)
Oracle
Oracle Oracle Database Server Risk Matrix: Spatial Studio (Apache Commons Beanutils) — CVE-2019-10086
vendor_oracle·2020-07-15·CVSS 7.3
CVE-2019-10086 [HIGH] Oracle Oracle Database Server Risk Matrix: Spatial Studio (Apache Commons Beanutils) — CVE-2019-10086
Oracle Oracle Database Server Risk Matrix: Spatial Studio (Apache Commons Beanutils) vulnerability
CVE: CVE-2019-10086
CVSS: 0.0
Protocol: None
Remote exploit: No
Affected versions: Local
Advisory: cpujul2020 (JUL 2020)
Oracle
Oracle Oracle Construction and Engineering Risk Matrix: Admin (Apache Commons Beanutils) — CVE-2019-10086
vendor_oracle·2020-04-15·CVSS 7.3
CVE-2019-10086 [HIGH] Oracle Oracle Construction and Engineering Risk Matrix: Admin (Apache Commons Beanutils) — CVE-2019-10086
Oracle Oracle Construction and Engineering Risk Matrix: Admin (Apache Commons Beanutils) vulnerability
CVE: CVE-2019-10086
CVSS: 7.3
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpuapr2020 (APR 2020)
Red Hat
apache-commons-beanutils: does not suppresses the class property in PropertyUtilsBean by default
vendor_redhat·2019-08-15·CVSS 7.3
CVE-2019-10086 [HIGH] CWE-502 apache-commons-beanutils: does not suppresses the class property in PropertyUtilsBean by default
apache-commons-beanutils: does not suppresses the class property in PropertyUtilsBean by default
In Apache Commons Beanutils 1.9.2, a special BeanIntrospector class was added which allows suppressing the ability for an attacker to access the classloader via the class property available on all Java objects. We, however were not using this by default characteristic of the PropertyUtilsBean.
A flaw was found in the Apache Commons BeanUtils, where the class property in PropertyUtilsBean is not suppressed by default. This flaw allows an attacker to access the classloader.
Mitigation: There is no currently known mitigation for this flaw.
Package: commons-beanutils (Red Hat AMQ Broker 7) - Affected
Package: commons-beanutils (Red Hat BPM Suite 6) - Out of support scope
Package: jakarta-comm
Debian
CVE-2019-10086: commons-beanutils - In Apache Commons Beanutils 1.9.2, a special BeanIntrospector class was added wh...
vendor_debian·2019·CVSS 7.3
CVE-2019-10086 [HIGH] CVE-2019-10086: commons-beanutils - In Apache Commons Beanutils 1.9.2, a special BeanIntrospector class was added wh...
In Apache Commons Beanutils 1.9.2, a special BeanIntrospector class was added which allows suppressing the ability for an attacker to access the classloader via the class property available on all Java objects. We, however were not using this by default characteristic of the PropertyUtilsBean.
Scope: local
bookworm: resolved (fixed in 1.9.4-1)
bullseye: resolved (fixed in 1.9.4-1)
forky: resolved (fixed in 1.9.4-1)
sid: resolved (fixed in 1.9.4-1)
trixie: resolved (fixed in 1.9.4-1)
GHSA
Insecure Deserialization in Apache Commons Beanutils
ghsa·2020-06-15
CVE-2019-10086 [HIGH] CWE-502 Insecure Deserialization in Apache Commons Beanutils
Insecure Deserialization in Apache Commons Beanutils
In Apache Commons Beanutils 1.9.2, a special BeanIntrospector class was added which allows suppressing the ability for an attacker to access the classloader via the class property available on all Java objects. We, however were not using this by default characteristic of the PropertyUtilsBean.
OSV
Insecure Deserialization in Apache Commons Beanutils
osv·2020-06-15
CVE-2019-10086 [HIGH] Insecure Deserialization in Apache Commons Beanutils
Insecure Deserialization in Apache Commons Beanutils
In Apache Commons Beanutils 1.9.2, a special BeanIntrospector class was added which allows suppressing the ability for an attacker to access the classloader via the class property available on all Java objects. We, however were not using this by default characteristic of the PropertyUtilsBean.
OSV
CVE-2019-10086: In Apache Commons Beanutils 1
osv·2019-08-20·CVSS 7.3
CVE-2019-10086 [HIGH] CVE-2019-10086: In Apache Commons Beanutils 1
In Apache Commons Beanutils 1.9.2, a special BeanIntrospector class was added which allows suppressing the ability for an attacker to access the classloader via the class property available on all Java objects. We, however were not using this by default characteristic of the PropertyUtilsBean.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2019-10086 apache-commons-beanutils: does not suppresses the class property in PropertyUtilsBean by default [fedora-all]
bugzilla·2019-10-31·CVSS 7.3
CVE-2019-10086 [HIGH] CVE-2019-10086 apache-commons-beanutils: does not suppresses the class property in PropertyUtilsBean by default [fedora-all]
CVE-2019-10086 apache-commons-beanutils: does not suppresses the class property in PropertyUtilsBean by default [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE:
Bugzilla
CVE-2019-10086 apache-commons-beanutils: does not suppresses the class property in PropertyUtilsBean by default
bugzilla·2019-10-31·CVSS 7.3
CVE-2019-10086 [HIGH] CVE-2019-10086 apache-commons-beanutils: does not suppresses the class property in PropertyUtilsBean by default
CVE-2019-10086 apache-commons-beanutils: does not suppresses the class property in PropertyUtilsBean by default
In Apache Commons Beanutils 1.9.2, a special BeanIntrospector class was added which allows suppressing the ability for an attacker to access the classloader via the class property available on all Java objects. We, however were not using this by default characteristic of the PropertyUtilsBean.
Reference:
http://mail-archives.apache.org/mod_mbox/www-announce/201908.mbox/%[email protected]%3e
Discussion:
Created apache-commons-beanutils tracking bugs for this issue:
Affects: fedora-all [bug 1767498]
---
The page for the CVE entry [0] claims that this affects versions This vulnerability is out of security support scope for the following
> produ
Bugzilla
CVE-2014-0114 Apache Struts 1: Class Loader manipulation via request parameters
bugzilla·2014-04-28·CVSS 7.5
CVE-2014-0114 [HIGH] CVE-2014-0114 Apache Struts 1: Class Loader manipulation via request parameters
CVE-2014-0114 Apache Struts 1: Class Loader manipulation via request parameters
It was found that the Struts 1 ActionForm object allowed access to the 'class' parameter, which is directly mapped to the getClass() method. A remote attacker could use this flaw to manipulate the ClassLoader used by an application server running Struts 1. This could lead to remote code execution under certain conditions.
The root cause of this issue is the fact that commons-beanutils exposes the class property by default, with no mechanism to disable access to it. If a framework built on commons-beanutils does not otherwise suppress access to the class property, then a remote attacker could use this flaw to manipulate the ClassLoader used by the underlying container. This could lead to remote code execution
Tenable
Oracle October 2022 Critical Patch Update Addresses 179 CVEs
blogs_tenable·2022-10-19
Oracle October 2022 Critical Patch Update Addresses 179 CVEs
## Cloud Exposure
Tenable Cloud Security (CNAPP) Request a demo
Tenable Cloud Vulnerability Management Request a demo
Tenable CIEM Request a demo
Secure your cloud
## Vulnerability Exposure
Tenable Vulnerability Management Try for free
Tenable Security Center Request a demo
Tenable Web App Scanning Try for free
Tenable Patch Management Request a demo
Tenable Enclave Security Request a demo
Tenable Attack Surface Management Request a demo
Tenable Nessus Try for free
## AI Exposure
Tenable AI Exposure Request a demo
## OT/IoT Exposure
Tenable OT Security Request a demo
## Identity Exposure
Tenable Identity Exposure Request a demo
## Business needs
Active Directory
AI Security Posture Management (AI-SPM)
AWS security
Azure security
Cloud Security Posture Man
Tenable
Oracle October 2021 Critical Patch Update Addresses 231 CVEs
blogs_tenable·2021-10-20
Oracle October 2021 Critical Patch Update Addresses 231 CVEs
## Cloud Exposure
Tenable Cloud Security (CNAPP) Request a demo
Tenable Cloud Vulnerability Management Request a demo
Tenable CIEM Request a demo
Secure your cloud
## Vulnerability Exposure
Tenable Vulnerability Management Try for free
Tenable Security Center Request a demo
Tenable Web App Scanning Try for free
Tenable Patch Management Request a demo
Tenable Enclave Security Request a demo
Tenable Attack Surface Management Request a demo
Tenable Nessus Try for free
## AI Exposure
Tenable AI Exposure Request a demo
## OT/IoT Exposure
Tenable OT Security Request a demo
## Identity Exposure
Tenable Identity Exposure Request a demo
## Business needs
Active Directory
AI Security Posture Management (AI-SPM)
AWS security
Azure security
Cloud Security Posture Man
arXiv
A Large-scale Empirical Study on the Generalizability of Disclosed Java Library Vulnerability Exploits
arxiv_fulltext·2026-03
A Large-scale Empirical Study on the Generalizability of Disclosed Java Library Vulnerability Exploits
## Abstract
Open-source software supply chain security relies heavily on assessing affected versions of library vulnerabilities. While prior studies have leveraged exploits for verifying vulnerability affected versions, they point out a key limitation that exploits are version-specific and cannot be directly applied across library versions. Despite being widely acknowledged, this limitation has not been systematically validated at scale, leaving the actual applicability of exploits across versions unexplored. To fill this gap, we conduct the first large-scale empirical study on exploit applicability across library versions. We construct a comprehensive dataset consisting of 259 exploits spanning 128 Java libraries and 28,150 historical versions, covering 61 CWEs that account for 76.33% of
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00007.htmlhttp://mail-archives.apache.org/mod_mbox/www-announce/201908.mbox/%3cC628798F-315D-4428-8CB1-4ED1ECC958E4%40apache.org%3ehttps://access.redhat.com/errata/RHSA-2019:4317https://access.redhat.com/errata/RHSA-2020:0057https://access.redhat.com/errata/RHSA-2020:0194https://access.redhat.com/errata/RHSA-2020:0804https://access.redhat.com/errata/RHSA-2020:0805https://access.redhat.com/errata/RHSA-2020:0806https://access.redhat.com/errata/RHSA-2020:0811https://lists.apache.org/thread.html/02094ad226dbc17a2368beaf27e61d8b1432f5baf77d0ca995bb78bc%40%3Cissues.commons.apache.org%3Ehttps://lists.apache.org/thread.html/1f78f1e32cc5614ec0c5b822ba4bd7fc8e8b5c46c8e038b6bd609cb5%40%3Cissues.commons.apache.org%3Ehttps://lists.apache.org/thread.html/2fd61dc89df9aeab738d2b49f48d42c76f7d53b980ba04e1d48bce48%40%3Cdev.shiro.apache.org%3Ehttps://lists.apache.org/thread.html/3d1ed1a1596c08c4d5fea97b36c651ce167b773f1afc75251ce7a125%40%3Ccommits.tinkerpop.apache.org%3Ehttps://lists.apache.org/thread.html/519eb0fd45642dcecd9ff74cb3e71c20a4753f7d82e2f07864b5108f%40%3Cdev.drill.apache.org%3Ehttps://lists.apache.org/thread.html/5261066cd7adee081ee05c8bf0e96cf0b2eeaced391e19117ae4daa6%40%3Cdev.shiro.apache.org%3Ehttps://lists.apache.org/thread.html/956995acee0d8bc046f1df0a55b7fbeb65dd2f82864e5de1078bacb0%40%3Cissues.commons.apache.org%3Ehttps://lists.apache.org/thread.html/a684107d3a78e431cf0fbb90629e8559a36ff8fe94c3a76e620b39fa%40%3Cdev.shiro.apache.org%3Ehttps://lists.apache.org/thread.html/b0656d359c7d40ec9f39c8cc61bca66802ef9a2a12ee199f5b0c1442%40%3Cdev.drill.apache.org%3Ehttps://lists.apache.org/thread.html/c94bc9649d5109a663b2129371dc45753fbdeacd340105548bbe93c3%40%3Cdev.shiro.apache.org%3Ehttps://lists.apache.org/thread.html/d6ca9439c53374b597f33b7ec180001625597db48ea30356af01145f%40%3Cdev.shiro.apache.org%3Ehttps://lists.apache.org/thread.html/f9bc3e55f4e28d1dcd1a69aae6d53e609a758e34d2869b4d798e13cc%40%3Cissues.drill.apache.org%3Ehttps://lists.apache.org/thread.html/r18d8b4f9263e5cad3bbaef0cdba0e2ccdf9201316ac4b85e23eb7ee4%40%3Cdev.atlas.apache.org%3Ehttps://lists.apache.org/thread.html/r2d5f1d88c39bd615271abda63964a0bee9b2b57fef1f84cb4c43032e%40%3Cissues.nifi.apache.org%3Ehttps://lists.apache.org/thread.html/r306c0322aa5c0da731e03f3ce9f07f4745c052c6b73f4e78faf232ca%40%3Cdev.atlas.apache.org%3Ehttps://lists.apache.org/thread.html/r43de02fd4a4f52c4bdeff8c02f09625d83cd047498009c1cdab857db%40%3Cdev.rocketmq.apache.org%3Ehttps://lists.apache.org/thread.html/r46e536fc98942dce99fadd2e313aeefe90c1a769c5cd85d98df9d098%40%3Cissues.nifi.apache.org%3Ehttps://lists.apache.org/thread.html/r513a7a21c422170318115463b399dd58ab447fe0990b13e5884f0825%40%3Ccommits.dolphinscheduler.apache.org%3Ehttps://lists.apache.org/thread.html/r6194ced4828deb32023cd314e31f41c61d388b58935d102c7de91f58%40%3Cdev.atlas.apache.org%3Ehttps://lists.apache.org/thread.html/r967953a14e05016bc4bcae9ef3dd92e770181158b4246976ed8295c9%40%3Cdev.brooklyn.apache.org%3Ehttps://lists.apache.org/thread.html/ra41fd0ad4b7e1d675c03a5081a16a6603085a4e37d30b866067566fe%40%3Cissues.nifi.apache.org%3Ehttps://lists.apache.org/thread.html/ra87ac17410a62e813cba901fdd4e9a674dd53daaf714870f28e905f1%40%3Cdev.atlas.apache.org%3Ehttps://lists.apache.org/thread.html/ra9a139fdc0999750dcd519e81384bc1fe3946f311b1796221205f51c%40%3Ccommits.dolphinscheduler.apache.org%3Ehttps://lists.apache.org/thread.html/racd3e7b2149fa2f255f016bd6bffab0fea77b6fb81c50db9a17f78e6%40%3Cdev.atlas.apache.org%3Ehttps://lists.apache.org/thread.html/rae81e0c8ebdf47ffaa85a01240836bfece8a990c48f55c7933162b5c%40%3Cdev.atlas.apache.org%3Ehttps://lists.apache.org/thread.html/rb1f76c2c0a4d6efb8a3523974f9d085d5838b73e7bffdf9a8f212997%40%3Cissues.nifi.apache.org%3Ehttps://lists.apache.org/thread.html/rb8dac04cb7e9cc5dedee8dabaa1c92614f590642e5ebf02a145915ba%40%3Ccommits.atlas.apache.org%3Ehttps://lists.apache.org/thread.html/rcc029be4edaaf5b8bb85818aab494e16f312fced07a0f4a202771ba2%40%3Cissues.nifi.apache.org%3Ehttps://lists.apache.org/thread.html/rd2d2493f4f1af6980d265b8d84c857e2b7ab80a46e1423710c448957%40%3Cissues.nifi.apache.org%3Ehttps://lists.apache.org/thread.html/re2028d4d76ba1db3e3c3a722d6c6034e801cc3b309f69cc166eaa32b%40%3Ccommits.nifi.apache.org%3Ehttps://lists.apache.org/thread.html/re3cd7cb641d7fc6684e4fc3c336a8bad4a01434bb5625a06e3600fd1%40%3Cissues.nifi.apache.org%3Ehttps://lists.apache.org/thread.html/rec74f3a94dd850259c730b4ba6f7b6211222b58900ec088754aa0534%40%3Cissues.nifi.apache.org%3Ehttps://lists.apache.org/thread.html/reee57101464cf7622d640ae013b2162eb864f603ec4093de8240bb8f%40%3Cdev.atlas.apache.org%3Ehttps://lists.debian.org/debian-lts-announce/2019/08/msg00030.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4APPGLBWMFAS4WHNLR4LIJ65DJGPV7TF/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JIUYSL2RSIWZVNSUIXJTIFPIPIF6OAIO/https://www.oracle.com//security-alerts/cpujul2021.htmlhttps://www.oracle.com/security-alerts/cpuApr2021.htmlhttps://www.oracle.com/security-alerts/cpuapr2020.htmlhttps://www.oracle.com/security-alerts/cpuapr2022.htmlhttps://www.oracle.com/security-alerts/cpujan2020.htmlhttps://www.oracle.com/security-alerts/cpujan2021.htmlhttps://www.oracle.com/security-alerts/cpujan2022.htmlhttps://www.oracle.com/security-alerts/cpujul2020.htmlhttps://www.oracle.com/security-alerts/cpujul2022.htmlhttps://www.oracle.com/security-alerts/cpuoct2021.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-09/msg00007.htmlhttp://mail-archives.apache.org/mod_mbox/www-announce/201908.mbox/%3cC628798F-315D-4428-8CB1-4ED1ECC958E4%40apache.org%3ehttps://access.redhat.com/errata/RHSA-2019:4317https://access.redhat.com/errata/RHSA-2020:0057https://access.redhat.com/errata/RHSA-2020:0194https://access.redhat.com/errata/RHSA-2020:0804https://access.redhat.com/errata/RHSA-2020:0805https://access.redhat.com/errata/RHSA-2020:0806https://access.redhat.com/errata/RHSA-2020:0811https://lists.apache.org/thread.html/02094ad226dbc17a2368beaf27e61d8b1432f5baf77d0ca995bb78bc%40%3Cissues.commons.apache.org%3Ehttps://lists.apache.org/thread.html/1f78f1e32cc5614ec0c5b822ba4bd7fc8e8b5c46c8e038b6bd609cb5%40%3Cissues.commons.apache.org%3Ehttps://lists.apache.org/thread.html/2fd61dc89df9aeab738d2b49f48d42c76f7d53b980ba04e1d48bce48%40%3Cdev.shiro.apache.org%3Ehttps://lists.apache.org/thread.html/3d1ed1a1596c08c4d5fea97b36c651ce167b773f1afc75251ce7a125%40%3Ccommits.tinkerpop.apache.org%3Ehttps://lists.apache.org/thread.html/519eb0fd45642dcecd9ff74cb3e71c20a4753f7d82e2f07864b5108f%40%3Cdev.drill.apache.org%3Ehttps://lists.apache.org/thread.html/5261066cd7adee081ee05c8bf0e96cf0b2eeaced391e19117ae4daa6%40%3Cdev.shiro.apache.org%3Ehttps://lists.apache.org/thread.html/956995acee0d8bc046f1df0a55b7fbeb65dd2f82864e5de1078bacb0%40%3Cissues.commons.apache.org%3Ehttps://lists.apache.org/thread.html/a684107d3a78e431cf0fbb90629e8559a36ff8fe94c3a76e620b39fa%40%3Cdev.shiro.apache.org%3Ehttps://lists.apache.org/thread.html/b0656d359c7d40ec9f39c8cc61bca66802ef9a2a12ee199f5b0c1442%40%3Cdev.drill.apache.org%3Ehttps://lists.apache.org/thread.html/c94bc9649d5109a663b2129371dc45753fbdeacd340105548bbe93c3%40%3Cdev.shiro.apache.org%3Ehttps://lists.apache.org/thread.html/d6ca9439c53374b597f33b7ec180001625597db48ea30356af01145f%40%3Cdev.shiro.apache.org%3Ehttps://lists.apache.org/thread.html/f9bc3e55f4e28d1dcd1a69aae6d53e609a758e34d2869b4d798e13cc%40%3Cissues.drill.apache.org%3Ehttps://lists.apache.org/thread.html/r18d8b4f9263e5cad3bbaef0cdba0e2ccdf9201316ac4b85e23eb7ee4%40%3Cdev.atlas.apache.org%3Ehttps://lists.apache.org/thread.html/r2d5f1d88c39bd615271abda63964a0bee9b2b57fef1f84cb4c43032e%40%3Cissues.nifi.apache.org%3Ehttps://lists.apache.org/thread.html/r306c0322aa5c0da731e03f3ce9f07f4745c052c6b73f4e78faf232ca%40%3Cdev.atlas.apache.org%3Ehttps://lists.apache.org/thread.html/r43de02fd4a4f52c4bdeff8c02f09625d83cd047498009c1cdab857db%40%3Cdev.rocketmq.apache.org%3Ehttps://lists.apache.org/thread.html/r46e536fc98942dce99fadd2e313aeefe90c1a769c5cd85d98df9d098%40%3Cissues.nifi.apache.org%3Ehttps://lists.apache.org/thread.html/r513a7a21c422170318115463b399dd58ab447fe0990b13e5884f0825%40%3Ccommits.dolphinscheduler.apache.org%3Ehttps://lists.apache.org/thread.html/r6194ced4828deb32023cd314e31f41c61d388b58935d102c7de91f58%40%3Cdev.atlas.apache.org%3Ehttps://lists.apache.org/thread.html/r967953a14e05016bc4bcae9ef3dd92e770181158b4246976ed8295c9%40%3Cdev.brooklyn.apache.org%3Ehttps://lists.apache.org/thread.html/ra41fd0ad4b7e1d675c03a5081a16a6603085a4e37d30b866067566fe%40%3Cissues.nifi.apache.org%3Ehttps://lists.apache.org/thread.html/ra87ac17410a62e813cba901fdd4e9a674dd53daaf714870f28e905f1%40%3Cdev.atlas.apache.org%3Ehttps://lists.apache.org/thread.html/ra9a139fdc0999750dcd519e81384bc1fe3946f311b1796221205f51c%40%3Ccommits.dolphinscheduler.apache.org%3Ehttps://lists.apache.org/thread.html/racd3e7b2149fa2f255f016bd6bffab0fea77b6fb81c50db9a17f78e6%40%3Cdev.atlas.apache.org%3Ehttps://lists.apache.org/thread.html/rae81e0c8ebdf47ffaa85a01240836bfece8a990c48f55c7933162b5c%40%3Cdev.atlas.apache.org%3Ehttps://lists.apache.org/thread.html/rb1f76c2c0a4d6efb8a3523974f9d085d5838b73e7bffdf9a8f212997%40%3Cissues.nifi.apache.org%3Ehttps://lists.apache.org/thread.html/rb8dac04cb7e9cc5dedee8dabaa1c92614f590642e5ebf02a145915ba%40%3Ccommits.atlas.apache.org%3Ehttps://lists.apache.org/thread.html/rcc029be4edaaf5b8bb85818aab494e16f312fced07a0f4a202771ba2%40%3Cissues.nifi.apache.org%3Ehttps://lists.apache.org/thread.html/rd2d2493f4f1af6980d265b8d84c857e2b7ab80a46e1423710c448957%40%3Cissues.nifi.apache.org%3Ehttps://lists.apache.org/thread.html/re2028d4d76ba1db3e3c3a722d6c6034e801cc3b309f69cc166eaa32b%40%3Ccommits.nifi.apache.org%3Ehttps://lists.apache.org/thread.html/re3cd7cb641d7fc6684e4fc3c336a8bad4a01434bb5625a06e3600fd1%40%3Cissues.nifi.apache.org%3Ehttps://lists.apache.org/thread.html/rec74f3a94dd850259c730b4ba6f7b6211222b58900ec088754aa0534%40%3Cissues.nifi.apache.org%3Ehttps://lists.apache.org/thread.html/reee57101464cf7622d640ae013b2162eb864f603ec4093de8240bb8f%40%3Cdev.atlas.apache.org%3Ehttps://lists.debian.org/debian-lts-announce/2019/08/msg00030.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4APPGLBWMFAS4WHNLR4LIJ65DJGPV7TF/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JIUYSL2RSIWZVNSUIXJTIFPIPIF6OAIO/
+ 10 more references
2019-08-20
Published