SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-63043

HIGH · CVSS 7.5 EPSS 0.72%

Source: NVD + CISA KEV + EPSS · Published 2026-08-20 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

Apache InLong versions prior to 2.4.0 are vulnerable to a relative path traversal issue that allows arbitrary file reading from the Agent host filesystem. This vulnerability could lead to unauthorized access to sensitive files, posing a significant risk to data security. Organizations using affected versions should prioritize upgrading to 2.4.0 or applying the recommended patch to mitigate potential exploitation.

CVE
CVE-2026-63043
Severity
HIGH
CVSS
7.5
EPSS
0.72%
Apache GitHub

Original NVD Description

Relative Path Traversal vulnerability in Apache InLong. Arbitrary file read from the Agent host filesystem. This issue affects Apache InLong: from 2.0.0 before 2.4.0. Users are advised to upgrade to Apache InLong's 2.4.0 or cherry-pick [1] to solve it. [1]  https://github.com/apache/inlong/pull/12146 .

Related CVEs

Other vulnerabilities affecting the same vendor(s)