Vulnerabilities > Apache > Skywalking

DATE CVE VULNERABILITY TITLE RISK
2022-07-18 CVE-2022-36127 Unspecified vulnerability in Apache Skywalking
A vulnerability in Apache SkyWalking NodeJS Agent prior to 0.5.1.
network
low complexity
apache
7.5
2020-08-05 CVE-2020-13921 SQL Injection vulnerability in Apache Skywalking
**Resolved** Only when using H2/MySQL/TiDB as Apache SkyWalking storage, there is a SQL injection vulnerability in the wildcard query cases.
network
low complexity
apache CWE-89
critical
9.8
2020-06-30 CVE-2020-9483 SQL Injection vulnerability in Apache Skywalking
**Resolved** When use H2/MySQL/TiDB as Apache SkyWalking storage, the metadata query through GraphQL protocol, there is a SQL injection vulnerability, which allows to access unpexcted data.
network
low complexity
apache CWE-89
7.5