VYPR

klaw

by Aiven Open

CVEs (2)

  • CVE-2026-45080MedJun 2, 2026
    risk 0.45cvss epss

    Klaw is a self-service Apache Kafka Topic Management/Governance tool/portal. Prior to version 2.10.4, improper access control allows disclosure of password hash. This issue has been patched in version 2.10.4.

  • CVE-2026-44367LowJun 2, 2026
    risk 0.18cvss 2.7epss

    Klaw is a self-service Apache Kafka Topic Management/Governance tool/portal. Prior to version 2.10.4, a vulnerability exists in the user registration and login mechanisms due to inconsistent handling of username case sensitivity, leading to a targeted Denial of Service (DoS) and…