GHSA-5phw-3jrp-3vj8 · Severity: high · Ecosystem: maven — Server-Side Request Forgery in Apache Solr
The ReplicationHandler (normally registered at "/replication" under a Solr core) in Apache Solr has a "masterUrl" (also "leaderUrl" alias) parameter that is used to designate another ReplicationHandler on another Solr core to replicate index data into the local core. To prevent a SSRF vulnerability, Solr ought to check these parameters against a similar configuration it uses for the "shards" parameter. Prior to this bug getting fixed, it did not. This problem affects essentially all Solr versions prior to it getting fixed in 8.8.2.
Conclusion & alert: CVE-2021-27905 is rated High Risk (74.1/100): CVSS Critical severity, with high exploitation likelihood (EPSS 93.90%, 100th percentile). Core evidence: EPSS ranks this CVE among the most likely to be exploited in the near term. Mandatory action: High exploitation likelihood—assess exposure and prioritize remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-03-04 | 93.99% | 93.90% | -0.09% |
| 2 | 2026-03-01 | 93.90% | 93.99% | +0.09% |
| 3 | 2026-02-04 | — | 93.90% | — |
Full EPSS history (51 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 9.8 | 3.1 | CRITICAL |
|
3.9 | 5.9 | [email protected] |
| 7.5 | 2.0 | HIGH |
|
10.0 | 6.4 | [email protected] |
GHSA-5phw-3jrp-3vj8 · Severity: high · Ecosystem: maven — Server-Side Request Forgery in Apache Solr
| vendor | priority | summary | link |
|---|---|---|---|
debian
|
not yet assigned | CVE-2021-27905 not yet assigned priority: Debian including 1 source packages (lucene-solr), 5 status rows across 5 suites (bookworm, bullseye, forky, sid, trixie): resolved 5. | https://security-tracker.debian.org/tracker/CVE-2021-27905 |
redhat
|
high | — | https://access.redhat.com/security/cve/CVE-2021-27905 |
ubuntu
|
medium | CVE-2021-27905 medium priority: Ubuntu including 1 source packages (lucene-solr), 16 status rows across 16 suites (bionic, focal, groovy, hirsute, impish, jammy, kinetic, lunar, mantic, noble, oracular, plucky, questing, trusty, upstream, xenial): ignored 8, needs-triage 8. | https://ubuntu.com/security/CVE-2021-27905 |