All 4 CVE vulnerabilities found in ekuiper, with AI-generated Chinese analysis, references, and POCs.
Vendor: lf-edge
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-54379 | eKuiper API endpoints handling SQL queries with user-controlled table names. CWE-89 | 9.8 | - | 2025-07-24 |
| CVE-2024-52290 | Stored XSS in Configuration Key Functionality CWE-79 | 6.3 | Medium | 2025-05-14 |
| CVE-2024-52812 | LF Edge eKuiper has Stored XSS in Rules Functionality CWE-79 | 5.4 | Medium | 2025-03-10 |
| CVE-2024-43406 | LF Edge eKuiper has a SQL Injection in sqlKvStore CWE-89 | 8.8 | High | 2024-08-20 |
All 4 known CVE vulnerabilities affecting ekuiper with full Chinese analysis, references, and POCs where available.