Apache DolphinScheduler
cpe:2.3:a:apache:dolphinscheduler:*:*:*:*:*:*:*
- < 3.2.2
A vulnerability allowing improper input validation has been identified in Apache DolphinScheduler versions prior to 3.2.2. This issue enables an authenticated user to execute any shell script on the server by using the alert script feature.
Exploitation of this vulnerability allows for arbitrary shell script execution on the server.
Users are advised to upgrade to Apache DolphinScheduler version 3.3.1 or later, which addresses this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.