GHSA-rxgg-273w-rfw7
GitHub Security Advisory
Remote Code Execution vulnerability in Apache IoTDB via UDF
✓ GitHub Reviewed
HIGH
Has CVE
Advisory Details
Remote Code Execution vulnerability in Apache IoTDB. This issue affects Apache IoTDB from 1.0.0 through 1.2.2.
Users are recommended to upgrade to version 1.3.0, which fixes the issue.
Affected Packages
Maven
org.apache.iotdb:iotdb-core
Affected versions:
1.0.0
(fixed in 1.3.0)
PyPI
apache-iotdb
Affected versions:
1.0.0
(fixed in 1.3.0)
Related CVEs
Key Information
7.5
/10
Dataset
Last updated: July 27, 2025 6:35 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.