Vulnerabilities fixed in Semaphore 5.10.2
- Last Updated: May 29, 2026
- 1 minute read
- Semaphore
- Documentation
The following table lists the vulnerabilities resolved in Semaphore 5.10.2. You can filter the table by vulnerability or component. Note that some vulnerabilities have multiple IDs.
| Vulnerability ID | Component |
|---|---|
| BDSA-2021-1143 | underscore.js 1.5.2 |
| BDSA-2022-0608/CVE-2022-26336 | Apache POI |
| BDSA-2022-1336 | curl |
| BDSA-2023-1777/CVE-2023-32200 | jena:4.8.0 |
| BDSA-2024-7353 | OpenSSL |
| BDSA-2024-10752 | Quarkus:2.16.12.Final |
| BDSA-2025-2047 | @vitejs/plugin-react |
| BDSA-2025-3084 | Apache POI, tika-core |
| BDSA-2025-3106 | vitejs |
| BDSA-2025-4878/CVE-2025-30359 | webpack-dev-server 4.15.2 |
| BDSA-2025-4880/CVE-2025-30360 | webpack-dev-server 4.15.2 |
| BDSA-2025-4926 | Angular:1.8.0 |
| BDSA-2025-5149 | multer |
| BDSA-2025-5248 | Apache Commons FileUpload:2.0.0-M1 |
| BDSA-2025-5455 | CodeMirror |
| BDSA-2025-7146 | multer |
| BDSA-2025-7203 | jena 4.8, 4.9 |
| BDSA-2025-7204 | jena 4.8, 4.9 |
| BDSA-2025-7426 | form-data |
| BDSA-2025-8040 | Jose:5.10.0 |
| BDSA-2025-8614/CVE-2025-55163 | Netty Project - 4.1.121 |
| BDSA-2025-11547 | axios 1.11.0 |
| BDSA-2025-12234 | expressjs/express:5.1.0 |
| BDSA-2025-12969/CVE-2025-9232 | OpenSSL 3.0.16 |
| BDSA-2025-12971/CVE-2025-9230 | OpenSSL 3.0.16 |
| BDSA-2025-12972 | OpenSSL 3.0.18 |
| BDSA-2025-12973 | Logback |
| BDSA-2025-13797 | happy-dom - 12.10.3 |
| BDSA-2025-13797 | happy-dom - 20.0.1 |
| BDSA-2025-13945/CVE-2025-59419 | Netty |
| BDSA-2025-14147 | vitejs |
| BDSA-2025-20661 | Jakarta Mail:1.6.2 |
| BDSA-2025-27523 | js-yaml |
| BDSA-2025-27905 | esbuild 0.18.20 |
| BDSA-2025-27905 | esbuild 0.21.5 |
| BDSA-2025-28525/CVE-2025-12383 | Jersey 2.39 |
| BDSA-2025-28525 | Jersey 3.1.3 |
| BDSA-2025-33580 | body-parser 2.2.0 |
| BDSA-2025-34467 | node-forge 1.3.1 |
| BDSA-2025-35153 | node-forge 1.3.1 |
| BDSA-2025-35154 | node-forge 1.3.1 |
| BDSA-2025-40343/CVE-2024-51999 | expressjs/express 4.21.0 |
| BDSA-2025-43182 | node-jws 3.2.2 |
| BDSA-2025-43183 | tika-core 2.9.4 |
| CVE-2021-22923 | curl |
| CVE-2021-22924 | curl |
| CVE-2021-22925 | curl |
| CVE-2021-22926 | curl |
| CVE-2022-27774 | curl |
| CVE-2022-32221 | curl |
| CVE-2023-27535 | curl |
| CVE-2023-27536 | curl |
| CVE-2023-28322 | curl |
| CVE-2023-46218 | curl |
| CVE-2024-23807 | xerces-c |
| CVE-2024-8391 | eclipse-vertx/vert.x 4.4.9 and 4.5.21 |
| CVE-2025-4949/GHSA-vrpq-qp53-qv56 | n/a |
| CVE-2025-11965/GHSA-h5fg-jpgr-rv9c | vertx-web |
| CVE-2025-27587 | OpenSSL |
| CVE-2025-27587 | OpenSSL |
| CVE-2025-48734/GHSA-wxr5-93ph-8wr9 | n/a |
| GHSA-25qh-j22f-pwp8 | logback-core 1.5.16 |
| GHSA-36wv-v2qp-v4g4 | n/a |
| GHSA-3p8m-j85q-pgmj | netty 4.1.124 |
| GHSA-9342-92gg-6v29 | SMTP |
| GHSA-9623-mj7j-p9v4 CVE-2025-49574 | quarkus-vertx 3.19.1 |
| GHSA-jmp9-x22r-554x/BDSA-2025-11864 | spring-core 6.1.4 |
| GHSA-mmxm-8w33-wc4h | http2-common 9.4.56.v20240826 |
| GHSA-p72g-pv48-7w9x | tika-parser-pdf-module 2.3.0 |
| GHSA-rpjm-422r-95mh | tika-core 2.3.0 |
| GHSA-vv7r-c36w-3prj | commons-fileupload |