Qlik Talend Runtime
cpe:2.3:a:talend:esb_runtime:*:*:*:*:*:*:*
- < 8.0.1.R2026-01-RT
- < 7.3.1-R2026-01
A critical vulnerability allowing unauthenticated remote code execution has been identified in Talend JobServer versions prior to 8.0 (TPS-6017) and Talend Runtime versions prior to 8.0.1.R2026-01-RT or 7.3.1-R2026-01. The vulnerability arises from the JMX monitoring port, which can be exploited to execute arbitrary code on the server.
Exploitation of this vulnerability allows for full remote code execution on the affected Talend JobServer or Talend Runtime server.
Users of Talend JobServer should upgrade to version 8.0 (TPS-6017) or 7.3 (TPS-6018). Talend Runtime users should upgrade to version 8.0.1.R2026-01-RT or 7.3.1-R2026-01.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.