Vulnerabilities (CVE)

Filtered by vendor Apache Subscribe
Filtered by product Gravitino
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-53648 1 Apache 1 Gravitino 2026-06-30 N/A 5.4 MEDIUM
SQL misconfiguration in the Gravitino UI, in versions 1.0.0 and below, can allow a malicious user to read or truncate files. Users are recommended to upgrade to version 1.0.0, which fixes this issue.