oss-sec mailing list archives

CVE-2022-38369: Apache IoTDB: Login check vulnerability by session Id


From: Haonan Hou <haonan () apache org>
Date: Mon, 05 Sep 2022 08:41:38 +0000

Description:

Apache IoTDB version 0.13.0 is vulnerable by session id attack. Users should upgrade to version 0.13.1 which addresses 
this issue.


Current thread: