CVE-2022-47501: Apache OFBiz

High severity, CVSS 7.5. EPSS: 10.2% chance of exploitation in the next 30 days.

Arbitrary file reading vulnerability in Apache Software Foundation Apache OFBiz when using the Solr plugin. This is a  pre-authentication attack. This issue affects Apache OFBiz: before 18.12.07.

Affected products

  • Apache OFBiz: before 18.12.07 (fixed in 18.12.07)

Published 2023-04-14. Last modified 2026-06-17.