Is Quarkus 2.1.4 patched?
Current stable (3.36.2): 100/100
2.1.4 has 17 open critical-or-high vulnerabilities. Run 3.20.6.1 or later to clear them. See what 3.20.6.1 fixes →
Summary iPlain-English security status for Quarkus 2.1.4, built from its CVEs, active-exploitation data, end-of-life date and latest release.
Quarkus 2.1.4 is part of the 2.1 release line. 27 known vulnerabilities affect it. The minimum safe version is 3.20.6.1 — upgrade to it or later to clear the open critical/high issues. The 2.1 line reached end-of-life on 2021-08-26, so it no longer receives security patches. The latest supported Quarkus release is 3.36.2.
Known issues affecting 2.1.4
Exploited first, then by exploitation probability.
CVE-2022-4116 CRITICAL EPSS 33% → fixed in 2.14.2 CVE-2021-2471 MEDIUM EPSS 7% → fixed in 2.6.0 CVE-2021-37714 HIGH EPSS 7% → see advisory CVE-2021-37137 HIGH EPSS 6% → fixed in 2.2.4 CVE-2021-38153 MEDIUM EPSS 6% → fixed in 2.2.4 CVE-2021-37136 HIGH EPSS 6% → fixed in 2.2.4 CVE-2022-21724 HIGH EPSS 3% → fixed in 2.7.2 CVE-2022-42003 HIGH EPSS 3% → fixed in 2.13.3 CVE-2021-43797 MEDIUM EPSS 3% → fixed in 2.5.3 CVE-2022-42004 HIGH EPSS 3% → fixed in 2.13.0 CVE-2021-28170 MEDIUM EPSS 2% → fixed in 2.3.0 CVE-2022-21363 MEDIUM EPSS 1% → fixed in 2.7.0 CVE-2021-29427 HIGH EPSS 1% → see advisory CVE-2023-4853 HIGH EPSS 1% → fixed in 3.3.3 CVE-2022-0981 HIGH EPSS 1% → fixed in 2.7.1 CVE-2023-1584 HIGH EPSS 1% → fixed in 2.13.8 CVE-2021-3642 MEDIUM EPSS 1% → see advisory CVE-2023-6394 HIGH EPSS 1% → fixed in 3.6.0 CVE-2023-6267 HIGH EPSS 1% → fixed in 3.2.9 CVE-2022-4147 HIGH EPSS 1% → fixed in 2.14.2Other Quarkus versions
Check another release line of Quarkus.
Frequently asked
Is Quarkus 2.1.4 patched?
Quarkus 2.1.4 is end-of-life and no longer receives security patches. Move to 3.36.2.
What version should I upgrade Quarkus 2.1.4 to?
Upgrade Quarkus 2.1.4 to at least 3.20.6.1 to clear its 17 open critical-or-high vulnerabilities.
When does Quarkus 2.1 reach end-of-life?
Quarkus 2.1 reached end-of-life on 2021-08-26 and no longer receives security patches.
What is the latest version of Quarkus?
The latest supported Quarkus release is 3.36.2.
Is Quarkus 2.1.4 still receiving security updates?
No — Quarkus 2.1.4 is on the 2.1 line, which reached end-of-life on 2021-08-26 and no longer receives security updates. Upgrade to 3.36.2 or later to stay supported.
Informational only, from public data (NVD · CISA KEV · EPSS · endoflife.date), and can lag or miss vendor-specific fixes. Always confirm against Red Hat's official advisory before you patch or upgrade — Quarkus official site ↗