Akka Core
by Akka
Source repositories
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2017-1000034 | Hig | 0.46 | 8.1 | 0.06 | Jul 17, 2017 | Akka versions <=2.4.16 and 2.5-M1 are vulnerable to a java deserialization attack in its Remoting component resulting in remote code execution in the context of the ActorSystem. | ||
| CVE-2025-53393 | Med | 0.32 | 6.0 | 0.00 | Jun 28, 2025 | In Akka through 2.10.6, akka-cluster-metrics uses Java serialization for cluster metrics. |
- risk 0.46cvss 8.1epss 0.06
Akka versions <=2.4.16 and 2.5-M1 are vulnerable to a java deserialization attack in its Remoting component resulting in remote code execution in the context of the ActorSystem.
- risk 0.32cvss 6.0epss 0.00
In Akka through 2.10.6, akka-cluster-metrics uses Java serialization for cluster metrics.