Apache IoTDB Vulnerability in Version Range 1.3.3 to 2.0.4
CVE-2025-48392

Currently unrated

Key Information:

Vendor

Apache

Vendor
CVE Published:
24 September 2025

What is CVE-2025-48392?

A vulnerability has been identified in Apache IoTDB affecting versions 1.3.3 to 1.3.4 and 2.0.1-beta to 2.0.4. Users are strongly advised to upgrade to version 2.0.5 to mitigate potential security risks. This flaw could expose systems to various attacks, making it imperative for users to act promptly.

Affected Version(s)

Apache IoTDB 1.3.3 <= 1.3.4

Apache IoTDB 2.0.1-beta <= 2.0.4

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

yyjLF
.