CVE-2018-1284
LowAdvisory
Published 21 Nov 2018In the index since 6 Sept 2026
- Severity
- Low
- worst across findings
- CVSS
- 3.7
- base score, highest
- EPSS
- 0.022
- 81st percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 4
- of 17,781 indexed, latest versions
- Container images
- 2
- deployed by those charts
- Fix available
- 2 of 2
- affected packages
Exposure of Sensitive Information to an Unauthorized Actor in Apache hive
Carried by container images the latest versions of 4 of 17,781 indexed charts deploy, on 2 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| hive-execmaven | 2.3.2 | 2.3.3 | 2 |
| hive-servicemaven | 2.3.2 | 2.3.3 | 2 |
- OSV records
- GHSA-rxmr-c9jm-7mm8
Charts affected
4 by stars
Container images carrying it
2 by charts deploying them
A fixed version is listed for 2 of the 2 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| bde2020/ | 620267768985 | hive-exec hive-service | 2.3.3 2.3.3 | 4 |
| gradiant/ | aae4f8a21f8b | hive-exec hive-service | 2.3.3 2.3.3 | 2 |