CRITICAL9.8CVE-2024-26579Apache Inlong Deserialization of Untrusted Data vulnerability >= 1.7.0, < 1.12.0
CRITICAL9.8CVE-2023-51784Apache InLong Manager Remote Code Execution vulnerability >= 1.5.0, < 1.10.0
>= 1.4.0, < 1.9.0
CRITICAL9.8Apache InLong has Weak Password Requirements in Apache InLong
>= 1.1.0, < 1.47.0
CRITICAL9.8Apache InLong Improper Privilege Management vulnerability
>= 1.2.0, < 1.7.0
CRITICAL9.1Apache InLong Insufficient Session Expiration vulnerability
>= 1.4.0, < 1.7.0
HIGH7.5Apache InLong Manager Arbitrary File Read Vulnerability
>= 1.5.0, < 1.10.0
HIGH7.5Apache InLong Deserialization of Untrusted Data Vulnerability
>= 1.4.0, < 1.9.0
HIGH7.5JDBC URL bypassing by allowLoadLocalInfileInPath param
>= 1.4.0, < 1.8.0
HIGH7.5Apache InLong Deserialization of Untrusted Data Vulnerability
>= 1.4.0, < 1.7.0
HIGH7.5Apache InLong Exposure of Resource to Wrong Sphere vulnerability
>= 1.4.0, < 1.7.0
HIGH7.5Apache InLong Exposure of Resource to Wrong Sphere vulnerability
>= 1.4.0, < 1.7.0
MEDIUM6.5Apache InLong: JDBC Vulnerability For URLEncode and backspace bypass
>= 1.13.0, < 2.2.0
MEDIUM6.5User data exposure in Apache InLong
>= 1.5.0, < 1.7.0
MEDIUM5.3Apache InLong SQL Injection vulnerability
>= 1.4.0, < 1.6.0
—Apache InLong: JDBC Vulnerability for Invisible Character Bypass Leading to Arbitrary File Read
>= 1.13.0, < 2.2.0
—Apache InLong: JDBC Vulnerability during verification processing
>= 1.13.0, < 2.2.0