CyberRota Analysis
AI-GeneratedThe Apache Nutch Server, specifically versions 1.10 through 1.22, is vulnerable due to missing authorization and improper resource shutdown, which could lead to unauthorized access and job interruptions. Organizations using affected versions should prioritize upgrading to version 1.23, which eliminates the Nutch Server, or, if an upgrade is not feasible, restrict access to trusted users only. This vulnerability poses a significant risk to data integrity and service availability, making it critical for users to address promptly.
Original NVD Description
Missing Authorization, Improper Resource Shutdown and Job Interruption vulnerability in Apache Nutch Server (Nutch REST API). This issue affects Apache Nutch: from 1.10 through 1.22. Users are recommended to upgrade to version 1.23, which removes the Nutch Server. If an upgrade is not possible, user must restrict access to instances running the Nutch Service to trusted users only. Please, also visit the Apache Nutch security advisories https://nutch.apache.org/documentation/security/ .
Related CVEs
Other vulnerabilities affecting the same vendor(s)