CVE-2024-41151: Apache Hertzbeat

High severity, CVSS 8.8. EPSS: 1% chance of exploitation in the next 30 days.

Deserialization of Untrusted Data vulnerability in Apache HertzBeat. This vulnerability can only be exploited by authorized attackers. This issue affects Apache HertzBeat: before 1.6.1. Users are recommended to upgrade to version 1.6.1, which fixes the issue.

Affected products

  • Apache Hertzbeat: before 1.6.1 (fixed in 1.6.1)

Published 2024-11-18. Last modified 2026-06-17.