QID 980736
QID 980736: Java (maven) Security Update for org.apache.kylin:kylin-server-base (GHSA-7hmh-8gwv-mfvq)
Kylin has some restful apis which will concatenate SQLs with the user input string, a user is likely to be able to run malicious database queries.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-7hmh-8gwv-mfvq for updates pertaining to this vulnerability.
Vendor References
- GHSA-7hmh-8gwv-mfvq -
github.com/advisories/GHSA-7hmh-8gwv-mfvq
CVEs related to QID 980736
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-7hmh-8gwv-mfvq | org.apache.kylin:kylin-server-base |
|