Skip to content

Known CVE

Apache Druid Kafka Connect - Remote Code Execution

The vulnerability has the potential to enable a remote attacker with authentication to run any code on the system. This is due to unsafe deserialization that occurs during the configuration of the connector through the Kafka Connect REST API

CVE-2023-25194

High2023CVSS 8.8CWE-502

packetstorm · cve2023 · apache · druid · kafka · rce · jndi · oast

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website