CVE-2023-51784

CVE-2023-51784: Apache InLong: Remote Code Execution vulnerability in Apache InLong Manager

Vendor Apache Software Foundation
Product Apache InLong
Weakness CWE-94 · Code injection
Published January 3, 2024
Last update May 16, 2025

CVSS base score

What the vulnerability does

Description

Improper Control of Generation of Code ('Code Injection') vulnerability in Apache InLong.This issue affects Apache InLong: from 1.5.0 through 1.9.0, which could lead to Remote Code Execution. Users are advised to upgrade to Apache InLong's 1.10.0 or cherry-pick [1] to solve it. [1] https://github.com/apache/inlong/pull/9329

Key dates

Disclosure timeline

January 3, 2024 CVE published
May 16, 2025 Record updated