Brand
Hitachi Vantara: actively exploited vulnerabilities
2 vulnerabilities in Hitachi Vantara products (Pentaho Business Analytics (BA) Server) are in CISA’s catalog of exploited vulnerabilities. Last added: March 3, 2025.
-
0 vulnerabilities added in the last 12 months
-
2 exploited vulnerabilities in the catalog, in total
-
0 added in the last 30 days
By category
Add just one Hitachi Vantara category to your radar, or open its page.
- ERP, business applications and databases 2 vulnerabilities
A high count also reflects how widely a product is deployed and how much attackers care about it: it is not a security rating.
Affected products
- Pentaho Business Analytics (BA) Server2 vulnerabilities, Business apps and data
Name used by CISA: Hitachi Vantara. Product families: indicative classification by this site.
Patch first
In the order of the main list (Patch first): recent additions first, then the most severe. The number is the rank within this Hitachi Vantara list.
- Rank 1
Hitachi Vantara Pentaho Business Analytics (BA) ServerCVE-2022-43939
Hitachi Vantara Pentaho BA Server Authorization Bypass Vulnerability
CVE from 2022, added in 2025
CVSS severity 9.8critical
Added Mar 3, 2025
- Rank 2
Hitachi Vantara Pentaho Business Analytics (BA) ServerCVE-2022-43769
Hitachi Vantara Pentaho BA Server Special Element Injection Vulnerability
CVE from 2022, added in 2025
CVSS severity 7.2high
Added Mar 3, 2025
Follow and verify
Indicative classification, based on the vendor and product names given by CISA. How products are classified.