9.8
CVSSv3

CVE-2022-45802

Published: 01/05/2023 Updated: 26/06/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Streampark allows any users to upload a jar as application, but there is no mandatory verification of the uploaded file type, causing users to upload some high-risk files, and may upload them to any directory, Users of the affected versions should upgrade to Apache StreamPark 2.0.0 or later

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apache streampark