Vulnerabilities > Apache > Inlong > 1.5.0

DATE CVE VULNERABILITY TITLE RISK
2023-02-01 CVE-2023-24997 Deserialization of Untrusted Data vulnerability in Apache Inlong
Deserialization of Untrusted Data vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache InLong: from 1.1.0 through 1.5.0. Users are advised to upgrade to Apache InLong's latest version or cherry-pick https://github.com/apache/inlong/pull/7223 https://github.com/apache/inlong/pull/7223  to solve it.
network
low complexity
apache CWE-502
critical
9.8
2023-02-01 CVE-2023-24977 Out-of-bounds Read vulnerability in Apache Inlong
Out-of-bounds Read vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache InLong: from 1.1.0 through 1.5.0. Users are advised to upgrade to Apache InLong's latest version or cherry-pick https://github.com/apache/inlong/pull/7214 https://github.com/apache/inlong/pull/7214  to solve it.
network
low complexity
apache CWE-125
7.5