VendorsApachealluraall versions
Vulnerabilities

Apache Allura

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

12CVEs
CVE-2026-73240
Apache Allura: Git command injection
Published 2026-08-12 · Analyzed
9.8EPSS 0.010
CVE-2026-69223
Apache Allura: Server-side request forgery
Published 2026-08-11 · Analyzed
9.1EPSS 0.008
CVE-2018-1299
In Apache Allura before 1.8.0, unauthenticated attackers may retrieve arbitrary files through the Allura web application. Some webservers used with Allura, such as Nginx, Apache/mod_wsgi or paster may prevent the attack from succeeding. Others, such as gunicorn do not prevent it and leave Allura vulnerable.
Published 2018-02-06 · Modified
7.5EPSS 0.030
CVE-2024-36471
Apache Allura: sensitive information exposure via DNS rebinding
Published 2024-06-10 · Analyzed
7.5EPSS 0.008
CVE-2026-73239
Apache Allura: Missing permission checks IDOR
Published 2026-08-12 · Analyzed
6.5EPSS 0.006
CVE-2019-10085
In Apache Allura prior to 1.11.0, a vulnerability exists for stored XSS on the user dropdown selector when creating or editing tickets. The XSS executes when a user engages with that dropdown on that page.
Published 2019-06-18 · Modified
6.1EPSS 0.051
CVE-2018-1319
In Apache Allura prior to 1.8.1, attackers may craft URLs that cause HTTP response splitting. If a victim goes to a maliciously crafted URL, unwanted results may occur including XSS or service denial for the victim's browsing session.
Published 2018-03-15 · Modified
6.1EPSS 0.022
CVE-2026-73237
Apache Allura: XSS in markdown pipeline
Published 2026-08-12 · Analyzed
6.1EPSS 0.008
CVE-2026-73238
Apache Allura: XSS in code display
Published 2026-08-12 · Analyzed
6.1EPSS 0.008
CVE-2026-75099
Apache Allura: Unauthenticated REST disclosure
Published 2026-08-24 · Analyzed
5.3EPSS 0.006
CVE-2023-46851
Apache Allura: sensitive information exposure via import
Published 2023-11-07 · Modified
4.9EPSS 0.016
CVE-2024-38379
Apache Allura: Stored authenticated XSS
Published 2024-06-22 · Modified
4.8EPSS 0.007