CVE-2023-49109 Information

Description

Exposure of Remote Code Execution in Apache Dolphinscheduler.

This issue affects Apache DolphinScheduler: before 3.2.1.

We recommend users to upgrade Apache DolphinScheduler to version 3.2.1 which fixes the issue.

Reference

https://github.com/apache/dolphinscheduler/pull/14991 https://lists.apache.org/thread/6kgsl93vtqlbdk6otttl0d8wmlspk0m5 https://lists.apache.org/thread/5b6yq2gov0fsy9x5dkvo8ws4rr45vkn8 http://www.openwall.com/lists/oss-security/2024/02/20/4

Share on: