Flink

by Apache

Take action — actively targeted

Flink is actively targeted by attackers. A significant proportion of its known vulnerabilities are being exploited.

What to do
  1. Apply all available updates immediately
  2. Review your exposure — is this internet-facing?
  3. Monitor vendor advisories for this product

What Attackers Target

Vulnerabilities with high exploit probability 66.7%
Confirmed actively exploited (CISA) 33.3%
Public exploit code available 33.3%
Based on 3 known vulnerabilities. Percentages show the proportion that are actively dangerous — a low percentage means most vulnerabilities in this product are not being exploited.

Most Dangerous Vulnerabilities

CVE CVSS Exploit Probability Confirmed
CVE-2020-17519 7.5 94.3% Yes
CVE-2020-17518 7.5 93.8%
CVE-2020-1960 4.7 0.1%
60
/ 100
high-risk
Active Threat 42/50 · Critical
Exploit Availability 18/50 · Low

Score uses Wilson score intervals to account for sample size. Products with few CVEs are scored conservatively.