CVE-2026-63015

CVE-2026-63015: Apache InLong: Non-template responsible persons can view template information

Vendor Apache Software Foundation
Product Apache InLong
Weakness CWE-400
Published August 20, 2026
Last update August 20, 2026

CVSS base score

What the vulnerability does

01Description

Uncontrolled Resource Consumption vulnerability in Apache InLong. Non-template responsible persons can view template information. This issue affects Apache InLong: from 2.0.0 before 2.4.0. Users are advised to upgrade to Apache InLong's 2.4.0 or cherry-pick [1] to solve it. [1] https://github.com/apache/inlong/pull/12093 https://github.com/apache/inlong/pull/11732

Key dates

02Disclosure timeline

August 20, 2026 CVE published
August 20, 2026 Record updated