CVE-2014-4651: Apache Jclouds

Critical severity, CVSS 9.8. EPSS: 2.1% chance of exploitation in the next 30 days.

It was found that the jclouds scriptbuilder Statements class wrote a temporary file to a predictable location. An attacker could use this flaw to access sensitive data, cause a denial of service, or perform other attacks.

Affected products

  • Apache Jclouds: from 1.7.3, before 1.8.0 (fixed in 1.8.0)

Published 2020-02-18. Last modified 2026-06-17.