CVE-2024-45791: Apache Hertzbeat

High severity, CVSS 7.5. EPSS: 0.8% chance of exploitation in the next 30 days.

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache HertzBeat. This issue affects Apache HertzBeat: before 1.6.1. Users are recommended to upgrade to version 1.6.1, which fixes the issue.

Affected products

  • Apache Hertzbeat: before 1.6.1 (fixed in 1.6.1)

Published 2024-11-18. Last modified 2026-06-17.