CVE-2024-27349: Apache Hugegraph

Critical severity, CVSS 9.1. EPSS: 1% chance of exploitation in the next 30 days.

Authentication Bypass by Spoofing vulnerability in Apache HugeGraph-Server.This issue affects Apache HugeGraph-Server: from 1.0.0 before 1.3.0. Users are recommended to upgrade to version 1.3.0, which fixes the issue.

Affected products

  • Apache Hugegraph: from 1.0.0, before 1.3.0 (fixed in 1.3.0)

Published 2024-04-22. Last modified 2026-06-17.