CVE-2020-1963: Apache Ignite

Critical severity, CVSS 9.1. EPSS: 5% chance of exploitation in the next 30 days.

Apache Ignite uses H2 database to build SQL distributed execution engine. H2 provides SQL functions which could be used by attacker to access to a filesystem.

Affected products

  • Apache Ignite: up to and including 2.8.0

Published 2020-06-03. Last modified 2026-06-17.