Apache InLong: JDBC Deserialization Vulnerability in InLong
CVE-2023-27296
What is CVE-2023-27296?
A deserialization of untrusted data vulnerability has been identified in Apache InLong, which could be exploited by authenticated users. This flaw allows attackers to potentially manipulate serialized data, leading to unpredictable behavior in the application. It is crucial for users operating versions from 1.1.0 to 1.5.0 to update to the latest version to mitigate these risks. For those unable to upgrade immediately, cherry-picking the patch from the official GitHub repository is recommended to address the vulnerability efficiently.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Apache InLong 1.1.0 <= 1.5.0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved