Vulnerabilities > Apache > Dolphinscheduler > 3.1.0

DATE CVE VULNERABILITY TITLE RISK
2024-08-12 CVE-2024-30188 Unspecified vulnerability in Apache Dolphinscheduler
File read and write vulnerability in Apache DolphinScheduler ,  authenticated users can illegally access additional resource files. This issue affects Apache DolphinScheduler: from 3.1.0 before 3.2.2. Users are recommended to upgrade to version 3.2.2, which fixes the issue.
network
low complexity
apache
8.1
2024-02-20 CVE-2023-51770 Unspecified vulnerability in Apache Dolphinscheduler
Arbitrary File Read Vulnerability in Apache Dolphinscheduler. This issue affects Apache DolphinScheduler: before 3.2.1.
network
low complexity
apache
7.5
2023-12-30 CVE-2023-49299 Unspecified vulnerability in Apache Dolphinscheduler
Improper Input Validation vulnerability in Apache DolphinScheduler.
network
low complexity
apache
8.8
2023-11-27 CVE-2023-49068 Unspecified vulnerability in Apache Dolphinscheduler
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache DolphinScheduler.This issue affects Apache DolphinScheduler: before 3.2.1. Users are recommended to upgrade to version 3.2.1, which fixes the issue.
network
low complexity
apache
7.5
2023-04-20 CVE-2023-25601 Unspecified vulnerability in Apache Dolphinscheduler
On version 3.0.0 through 3.1.1, Apache DolphinScheduler's python gateway suffered from improper authentication: an attacker could use a socket bytes attack without authentication.
network
low complexity
apache
4.3
2023-01-04 CVE-2022-45875 Unspecified vulnerability in Apache Dolphinscheduler
Improper validation of script alert plugin parameters in Apache DolphinScheduler to avoid remote command execution vulnerability.
network
low complexity
apache
critical
9.8