CWE-1104Base

Use of Unmaintained Third Party Components

Incomplete in the CWE catalog · 27 CVEs mapped

27
CVEs mapped
8.4
Median CVSS
What it is

The product relies on third-party components that are not

actively supported or maintained by the original developer or a trusted proxy

for the original developer.

Recent examples
4.2cvss
CVE-2026-21753

CVE-2026-21753 - MEDIUM Severity Vulnerability

HCL Hive is affected by weak software supply chain governance, which could lead to the inclusion of vulnerable, unmaintained, or malicious third-party dependencies within the application environment.

MEDIUMno explanation yet
0%
epss
7.5cvss
CVE-2026-21752

CVE-2026-21752 - HIGH Severity Vulnerability

HCL Hive is affected by a use of vulnerable third-party components which could allow an attacker unauthorized access or compromise of the system by exploiting publicly documented security flaws.

HIGHno explanation yet
0%
epss
none
CVE-2026-12554

CVE-2026-12554 - UNKNOWN Severity Vulnerability

Potential security vulnerabilities have been identified in HP Easy Start for macOS, versions prior to 2.16.7.260722. These potential vulnerabilities may lead to escalation of privilege. HP is releasing updates to mitigate these potential vulnerabilities.

no explanation yet
0%
epss
The record
Technical detail
CWE ID
CWE-1104
Abstraction
Base
Structure
Simple
Status
Incomplete
References (1)