CVE-2026-24343

Publication date

2026-02-10 09:28:52

Family

apache

State

PUBLISHED

Description

Improper Neutralization of Data within XPath Expressions (XPath Injection) vulnerability in Apache HertzBeat. This issue affects Apache HertzBeat: from 1.7.1 before 1.8.0. Users are recommended to upgrade to version 1.8.0, which fixes the issue.