Lucene search

K
osvGoogleOSV:GHSA-GH27-38P5-MRXC
HistoryMay 13, 2022 - 1:02 a.m.

Improper Control of Generation of Code in Apache Kafka

2022-05-1301:02:18
Google
osv.dev
8

0.001 Low

EPSS

Percentile

38.0%

In Apache Kafka 0.9.0.0 to 0.9.0.1, 0.10.0.0 to 0.10.2.1, 0.11.0.0 to 0.11.0.2, and 1.0.0, authenticated Kafka users may perform action reserved for the Broker via a manually created fetch request interfering with data replication, resulting in data loss.

CPENameOperatorVersion
org.apache.kafka:kafkaeq1.0.0

References

0.001 Low

EPSS

Percentile

38.0%