Vulnerabilities (CVE)

Filtered by vendor Apache Subscribe
Filtered by product Dolphinscheduler
Total 22 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-13922 1 Apache 1 Dolphinscheduler 2024-11-21 4.0 MEDIUM 6.5 MEDIUM
Versions of Apache DolphinScheduler prior to 1.3.2 allowed an ordinary user under any tenant to override another users password through the API interface.
CVE-2020-11974 1 Apache 1 Dolphinscheduler 2024-11-21 7.5 HIGH 9.8 CRITICAL
In DolphinScheduler 1.2.0 and 1.2.1, with mysql connectorj a remote code execution vulnerability exists when choosing mysql as database.