Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Apache InLong: Users who joined later can see the data of deleted users
Vulnerability Description
Insecure Default Initialization of Resource Vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache InLong: from 1.5.0 through 1.6.0. Users registered in InLong who joined later can see deleted users' data. Users are advised to upgrade to Apache InLong's 1.7.0 or cherry-pick https://github.com/apache/inlong/pull/7836 https://github.com/apache/inlong/pull/7836 to solve it.
CVSS Information
N/A
Vulnerability Type
不安全的默认资源初始化
Vulnerability Title
Apache InLong 安全漏洞
Vulnerability Description
Apache InLong是美国阿帕奇(Apache)基金会的一站式的海量数据集成框架。提供自动化、安全、可靠的数据传输能力。 Apache InLong 1.5.0版本至1.6.0版本存在安全漏洞。新注册的攻击者利用该漏洞可以看到已删除用户的数据。
CVSS Information
N/A
Vulnerability Type
N/A