org.eclipse.basyx:basyx.sdk
Maven2 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting org.eclipse.basyx:basyx.sdkpage 1 of 1
- CVE-2026-7411CRITICALCVSS 10.0EG 10.0✓ Fixed in 2.0.0-milestone-102026-05-05
vulnerable: 1.0.1 ... 1.5.1 (9 versions)
In Eclipse BaSyx Java Server SDK versions prior to 2.0.0-milestone-10, inadequate path normalization in the Submodel HTTP API allows an unauthenticated remote attacker to perform a path traversal attack. By supplying a maliciously crafted …
- CVE-2026-7412HIGHCVSS 8.6EG 8.6✓ Fixed in 2.0.0-milestone-102026-05-05
vulnerable: 1.0.1 ... 1.5.1 (9 versions)
In Eclipse BaSyx Java Server SDK versions prior to 2.0.0-milestone-10, the Operation Delegation feature fails to validate the destination URI of delegated requests. An unauthenticated remote attacker can exploit this design flaw to force t…
Check whether org.eclipse.basyx:basyx.sdk is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for org.eclipse.basyx:basyx.sdk CVEs against the assets you own.
Start Free Scan →