CVE-2022-34662

CVE-2022-34662: Apache DolphinScheduler prior to 3.0.0 allows path traversal

Vendor Apache Software Foundation
Product Apache DolphinScheduler
Weakness CWE-22 · Path traversal
Published November 1, 2022
Last update May 6, 2025

CVSS base score

What the vulnerability does

Description

When users add resources to the resource center with a relation path will cause path traversal issues and only for logged-in users. You could upgrade to version 3.0.0 or higher

Key dates

Disclosure timeline

November 1, 2022 CVE published
May 6, 2025 Record updated