Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Apache DolphinScheduler: The `/v2` experimental interface lacks permission checks
Vulnerability Description
Incorrect Authorization vulnerability of `/v2` experimental interface in Apache DolphinScheduler. This issue affects Apache DolphinScheduler: before 3.4.2. Users are recommended to upgrade to version 3.4.2, which fixes the issue.
CVSS Information
N/A
Vulnerability Type
授权机制不正确
Vulnerability Title
Apache dolphinscheduler 授权问题漏洞
Vulnerability Description
Apache dolphinscheduler是美国Apache基金会开源的一个分布式工作流调度器。 Apache dolphinscheduler 3.4.2之前版本存在授权问题漏洞,该漏洞源于`/v2`实验性接口存在授权不当问题,可能导致未授权的攻击者通过网络访问进行未授权操作,影响数据机密性和完整性。
CVSS Information
N/A
Vulnerability Type
N/A