ZeroHour

CVE-2021-27644

CVSS 3.1
8.8 high
EPSS
2%p79
Published
()
Modified
Description

In Apache DolphinScheduler before 1.3.6 versions, authorized users can use SQL injection in the data source center. (Only applicable to MySQL data source with internal login account password)

Vendors
apache
Products
dolphinscheduler
Weakness
CWE-264, CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.