CVE-2025-27531

Deserialization of Untrusted Data vulnerability in Apache InLong.  This issue affects Apache InLong: from 1.13.0 before 2.1.0, this issue would allow an authenticated attacker to read arbitrary files by double writing the param. Users are recommended to upgrade to version 2.1.0, which fixes the issue.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:apache:inlong:*:*:*:*:*:*:*:*

History

23 Jun 2025, 14:24

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-06 15:15

Updated : 2025-06-23 14:24


NVD link : CVE-2025-27531

Mitre link : CVE-2025-27531

CVE.ORG link : CVE-2025-27531


JSON object : View

Products Affected

apache

  • inlong
CWE
CWE-502

Deserialization of Untrusted Data