Apache InLong
cpe:2.3:a:apache:inlong:*:*:*:*:*:*:*
- >= 1.13.0, <= 2.1.0
A deserialization vulnerability allowing untrusted data to be processed improperly has been identified in Apache InLong versions 1.13.0 prior to 2.1.0. This issue serves as a secondary mining bypass for CVE-2024-26579, potentially leading to unauthorized manipulation of JDBC verification processes.
Exploitation of this vulnerability can cause sensitive parameters to be bypassed during JDBC verification, potentially leading to unauthorized data access or manipulation.
Users are advised to upgrade to Apache InLong version 2.2.0 or to cherry-pick the relevant fix from the Apache InLong GitHub repository.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.