SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-63016

MEDIUM · CVSS 5.3 EPSS 0.42%

Source: NVD + CISA KEV + EPSS · Published 2026-08-20 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

Apache InLong versions prior to 2.4.0 are vulnerable to an uncontrolled resource consumption issue, which could lead to operational configuration changes or the upload of unauthorized packages. This vulnerability poses a risk to users relying on Apache InLong for data integration and processing, potentially impacting system stability and security. Organizations using affected versions should prioritize upgrading to 2.4.0 or apply the relevant patches to mitigate the risk.

CVE
CVE-2026-63016
Severity
MEDIUM
CVSS
5.3
EPSS
0.42%
Apache GitHub

Original NVD Description

Uncontrolled Resource Consumption vulnerability in Apache InLong. Users could affect operational configuration or allow upload of non-official packages. This issue affects Apache InLong: from 2.0.0 before 2.4.0. Users are advised to upgrade to Apache InLong's 2.4.0 or cherry-pick [1] to solve it. [1] https://github.com/apache/inlong/pull/12095 https://github.com/apache/inlong/pull/11732

Related CVEs

Other vulnerabilities affecting the same vendor(s)