分配时不支持 在 Apache Griffin Hive 元存储模块中存在一个“SQL 命令中未正确中和特殊元素”(即 SQL 注入)的漏洞。 该问题影响 Apache Griffin Hive 元存储模块的所有版本。 由于该项目已停止维护,我们计划中不包含修复此问题的版本发布。建议用户寻找替代方案,或将实例的访问权限限制为受信任的用户。 注意:此漏洞仅影响维护者已不再支持的产品。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Apache Software Foundation | Apache Griffin Hive Metastore Module | ≤ * |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Apache Software Foundation | Apache Griffin Hive Metastore Module | 0 ~ * | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-80180 | Apache Allura: Stored XSS via markdown HTML processing | |
| CVE-2026-80181 | Apache Allura: Server-side request forgery | |
| CVE-2026-71216 | Apache SkyWalking: PagerDuty alarm hook transmits the integration routing key over clearte | |
| CVE-2026-81270 | Apache Allura: Information exposure via search | |
| CVE-2026-85229 | Apache SkyWalking: CWE-79 stored XSS in Booster UI dashboard widgets (incomplete fix of CV | |
| CVE-2026-80190 | Apache Allura: Stored XSS via code repositories |
No comments yet