Vulnerabilities > Apache > Hadoop > 3.2.3

DATE CVE VULNERABILITY TITLE RISK
2022-08-25 CVE-2021-25642 Unspecified vulnerability in Apache Hadoop
ZKConfigurationStore which is optionally used by CapacityScheduler of Apache Hadoop YARN deserializes data obtained from ZooKeeper without validation.
network
low complexity
apache
8.8
2022-08-04 CVE-2022-25168 Unspecified vulnerability in Apache Hadoop
Apache Hadoop's FileUtil.unTar(File, File) API does not escape the input file name before being passed to the shell.
network
low complexity
apache
critical
9.8