Browse all 6 CVE security advisories affecting fluent. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-44161 | Fluentd: Server-Side Request Forgery (SSRF) via Placeholder Expansion in `out_http` — fluentdCWE-918 | 7.2 | High | 2026-07-08 |
| CVE-2026-44160 | Fluentd: Denial of Service (DoS) via Gzip Decompression Bomb in `in_http` and `in_forward` — fluentdCWE-409 | 7.5 | High | 2026-07-08 |
| CVE-2026-44025 | Fluentd: Exposure of Sensitive Information via Monitor Agent API — fluentdCWE-306 | 7.5 | High | 2026-07-08 |
| CVE-2026-44024 | Fluentd: Remote Code Execution (RCE) via Arbitrary File Write in `${tag}` Placeholder — fluentdCWE-22 | 9.8 | Critical | 2026-07-08 |
| CVE-2022-39379 | Fluentd vulnerable to remote code execution due to insecure deserialization (in non-default configuration) — fluentdCWE-502 | 3.1 | Low | 2022-11-02 |
| CVE-2021-41186 | ReDoS vulnerability in parser_apache2 — fluentdCWE-400 | 5.9 | Medium | 2021-10-29 |
This page lists every published CVE security advisory associated with fluent. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.