UNKNOWN NVD
CVE-2026-63042
Files or Directories Accessible to External Parties vulnerability in Apache InLong. Any user who can authenticate to the manager can create, modify and delete D
Files or Directories Accessible to External Parties vulnerability in Apache InLong. Any user who can authenticate to the manager can create, modify and delete Data Node definitions.
This issue affects Apache InLong: from 2.0.0 before 2.4.0.
Users are advised to upgrade to Apache InLong's 2.4.0 or cherry-pick [1] to solve it.
[1] https://github.com/apache/inlong/pull/12161 .
References
- https://lists.apache.org/thread/wxs4jfjkoo6rlyovhrx8bo74rfmzwbk7
- https://www.openwall.com/lists/oss-security/2026/08/20/15
This unknown severity vulnerability was published on 2026-08-20 via NVD.
vulnfeed aggregates 11502 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.