pkg:Maven/org.apache.tika:tika-core

13 total CVEsCRITICAL2HIGH6MEDIUM5

✅ Check your installed version

All known vulnerabilities

  • CRITICAL9.8CVE-2025-66516Apache Tika has XXE vulnerability
    >= 1.13, < 3.2.2
  • CRITICAL9.8CVE-2016-6809Apache Tika allows Java code execution for serialized objects embedded in MATLAB files
    from 0, < 1.14
  • HIGH8.8CVE-2019-10088Allocation of Resources Without Limits or Throttling in Apache Tika
    >= 1.7, < 1.22
  • HIGH8.1CVE-2018-1335Command injection in org.apache.tika:tika-core
    >= 1.7, < 1.18
  • HIGH7.8CVE-2019-10094Allocation of Resources Without Limits or Throttling in Apache Tika
    >= 1.7, < 1.22
  • HIGH7.8CVE-2016-4434Apache Tika does not properly initialize the XML parser or choose handlers
    from 0, < 1.13
  • HIGH7.5CVE-2018-11761High severity vulnerability that affects org.apache.tika:tika-core
    >= 0.1, < 1.19.1
  • HIGH7.5CVE-2018-11796Apache Tika is vulnerable to entity expansions which can lead to a denial of service attack
    >= 0.1, < 1.19.1
  • MEDIUM5.9CVE-2018-11762Moderate severity vulnerability that affects org.apache.tika:tika-core
    >= 0.9, < 1.19
  • MEDIUM5.5CVE-2022-30973Regular expression denial of service in apache tika
    >= 1.17, < 1.28.3
  • MEDIUM5.5CVE-2022-30126Regular expression denial of service in apache tika
    >= 1.17, < 1.28.2
  • MEDIUM5.5CVE-2018-1338Moderate severity vulnerability that affects org.apache.tika:tika-core
    from 0, < 1.18
  • MEDIUM5.5CVE-2018-8017Comparison errorr in org.apache.tika:tika-core
    >= 1.2, < 1.19