pkg:maven/org.apache.inlong/manager-pojo

Type maven
Namespace org.apache.inlong
Name manager-pojo

Known advisories, vulnerabilities and fixes for org.apache.inlong/manager-pojo package.

Repository
https://mvnrepository.com/artifact/org.apache.inlong/manager-pojo
Critical 5
High 7
Moderate 2
Type Version Distribution # CVEs # Advisory ID Title Severity Published
Affected >= 1.4.0, < 1.7.0 CVE-2023-31065
maven MAVEN:GHSA-757P-7HP5-PQMR Apache InLong Insufficient Session Expiration vulnerability critical 2023-07-06T21:14:59
(14 months ago)
Fixed = 1.7.0 CVE-2023-31065
maven MAVEN:GHSA-757P-7HP5-PQMR Apache InLong Insufficient Session Expiration vulnerability critical 2023-07-06T21:14:59
(14 months ago)
Affected >= 1.4.0, < 1.7.0 CVE-2023-31103
maven MAVEN:GHSA-7MHC-76HF-3JP9 Apache InLong Exposure of Resource to Wrong Sphere vulnerability high 2023-07-06T21:14:59
(14 months ago)
Fixed = 1.7.0 CVE-2023-31103
maven MAVEN:GHSA-7MHC-76HF-3JP9 Apache InLong Exposure of Resource to Wrong Sphere vulnerability high 2023-07-06T21:14:59
(14 months ago)
Affected >= 1.5.0, < 1.10.0 CVE-2023-51784
maven MAVEN:GHSA-9XG9-HH45-XCM6 Apache InLong Manager Remote Code Execution vulnerability critical 2024-01-03T12:30:21
(8 months ago)
Fixed = 1.10.0 CVE-2023-51784
maven MAVEN:GHSA-9XG9-HH45-XCM6 Apache InLong Manager Remote Code Execution vulnerability critical 2024-01-03T12:30:21
(8 months ago)
Affected >= 1.4.0, < 1.7.0 CVE-2023-31058
maven MAVEN:GHSA-C3RH-F2W5-FGHM Apache InLong Deserialization of Untrusted Data Vulnerability high 2023-07-06T21:14:59
(14 months ago)
Fixed = 1.7.0 CVE-2023-31058
maven MAVEN:GHSA-C3RH-F2W5-FGHM Apache InLong Deserialization of Untrusted Data Vulnerability high 2023-07-06T21:14:59
(14 months ago)
Affected >= 1.4.0, < 1.6.0 CVE-2023-30465
maven MAVEN:GHSA-CQR6-3X3F-9WR3 Apache InLong SQL Injection vulnerability moderate 2023-07-06T19:24:14
(14 months ago)
Fixed = 1.6.0 CVE-2023-30465
maven MAVEN:GHSA-CQR6-3X3F-9WR3 Apache InLong SQL Injection vulnerability moderate 2023-07-06T19:24:14
(14 months ago)
Affected >= 1.5.0, < 1.10.0 CVE-2023-51785
maven MAVEN:GHSA-CRWJ-2R3C-GX2G Apache InLong Manager Arbitrary File Read Vulnerability high 2024-01-03T12:30:21
(8 months ago)
Fixed = 1.10.0 CVE-2023-51785
maven MAVEN:GHSA-CRWJ-2R3C-GX2G Apache InLong Manager Arbitrary File Read Vulnerability high 2024-01-03T12:30:21
(8 months ago)
Affected >= 1.4.0, < 1.7.0 CVE-2023-31206
maven MAVEN:GHSA-F475-JGG3-3JWC Apache InLong Exposure of Resource to Wrong Sphere vulnerability high 2023-07-06T21:14:59
(14 months ago)
Fixed = 1.7.0 CVE-2023-31206
maven MAVEN:GHSA-F475-JGG3-3JWC Apache InLong Exposure of Resource to Wrong Sphere vulnerability high 2023-07-06T21:14:59
(14 months ago)
Affected >= 1.7.0, < 1.12.0 CVE-2024-26579
maven MAVEN:GHSA-FGH3-PWMP-3QW3 Apache Inlong Deserialization of Untrusted Data vulnerability high 2024-05-08T15:30:42
(4 months ago)
Fixed = 1.12.0 CVE-2024-26579
maven MAVEN:GHSA-FGH3-PWMP-3QW3 Apache Inlong Deserialization of Untrusted Data vulnerability high 2024-05-08T15:30:42
(4 months ago)
Affected >= 1.5.0, < 1.7.0 CVE-2023-31101
maven MAVEN:GHSA-H79M-5CM2-278C User data exposure in Apache InLong moderate 2023-05-22T18:30:27
(16 months ago)
Fixed = 1.7.0 CVE-2023-31101
maven MAVEN:GHSA-H79M-5CM2-278C User data exposure in Apache InLong moderate 2023-05-22T18:30:27
(16 months ago)
Affected >= 1.4.0, < 1.9.0 CVE-2023-46227
maven MAVEN:GHSA-JJ32-3PF5-5MV5 Apache InLong Deserialization of Untrusted Data Vulnerability high 2023-10-19T12:30:23
(11 months ago)
Fixed = 1.9.0 CVE-2023-46227
maven MAVEN:GHSA-JJ32-3PF5-5MV5 Apache InLong Deserialization of Untrusted Data Vulnerability high 2023-10-19T12:30:23
(11 months ago)
Affected >= 1.4.0, < 1.8.0 CVE-2023-34434
maven MAVEN:GHSA-PQ67-9JF9-HC3C JDBC URL bypassing by allowLoadLocalInfileInPath param high 2023-07-25T09:30:18
(13 months ago)
Fixed = 1.8.0 CVE-2023-34434
maven MAVEN:GHSA-PQ67-9JF9-HC3C JDBC URL bypassing by allowLoadLocalInfileInPath param high 2023-07-25T09:30:18
(13 months ago)
Affected >= 1.2.0, < 1.7.0 CVE-2023-31062
maven MAVEN:GHSA-Q5P5-XG93-2JQC Apache InLong Improper Privilege Management vulnerability critical 2023-07-06T21:14:59
(14 months ago)
Fixed = 1.7.0 CVE-2023-31062
maven MAVEN:GHSA-Q5P5-XG93-2JQC Apache InLong Improper Privilege Management vulnerability critical 2023-07-06T21:14:59
(14 months ago)
Affected >= 1.4.0, < 1.9.0 CVE-2023-43668
maven MAVEN:GHSA-RP6X-GGW6-8G56 Authorization Bypass in Apache InLong critical 2023-10-16T09:30:19
(11 months ago)
Fixed = 1.9.0 CVE-2023-43668
maven MAVEN:GHSA-RP6X-GGW6-8G56 Authorization Bypass in Apache InLong critical 2023-10-16T09:30:19
(11 months ago)
Affected >= 1.1.0, < 1.7.0 CVE-2023-31098
maven MAVEN:GHSA-W3WR-GMWF-R333 Apache InLong has Weak Password Requirements in Apache InLong critical 2023-07-06T21:14:59
(14 months ago)
Fixed = 1.47.0 CVE-2023-31098
maven MAVEN:GHSA-W3WR-GMWF-R333 Apache InLong has Weak Password Requirements in Apache InLong critical 2023-07-06T21:14:59
(14 months ago)
Loading...