Linkis

Apache · 18 CVEs

CVE-2025-59355
MEDIUM

Apache Linkis: Password Exposure

Jan 19, 2026

CVE-2025-29847
HIGH

Apache Linkis: Arbitrary File Read via Double URL Encoding Bypass

Jan 19, 2026

CVE-2024-45627
MEDIUM

Apache Linkis Metadata Query Service JDBC: JDBC Datasource Module with Mysql has file read vulnerability

Jan 14, 2025

CVE-2024-39928
HIGH

Apache Linkis Spark EngineConn: Commons Lang's RandomStringUtils Random string security vulnerability

Sep 24, 2024

CVE-2024-27182
HIGH

Apache Linkis Basic management services: Engine material management Arbitrary file deletion vulnerability

Aug 2, 2024

CVE-2024-27181
HIGH

Apache Linkis Basic management services: Privilege Escalation Attack vulnerability

Aug 2, 2024

CVE-2023-49566
HIGH

Apache Linkis DataSource: JDBC Datasource Module with DB2 has JNDI Injection vulnerability

Jul 15, 2024

CVE-2023-46801
HIGH

Apache Linkis DataSource: DataSource Remote code execution vulnerability

Jul 15, 2024

CVE-2023-41916
HIGH

Apache Linkis DataSource: DatasourceManager module has a JDBC parameter judgment logic vulnerability that allows for a…

Jul 15, 2024

CVE-2023-50740
MEDIUM

Apache Linkis DataSource: DataSource module Oracle SQL Database Password Logged

Mar 6, 2024

CVE-2023-29216
CRITICAL

Apache Linkis DatasourceManager module has a deserialization command execution

Apr 10, 2023

CVE-2023-27987
CRITICAL

Apache Linkis gateway module token authentication bypass

Apr 10, 2023

CVE-2023-27603
CRITICAL

Apache Linkis Mangaer module engineConn material upload exists Zip Slip issue

Apr 10, 2023

CVE-2023-27602
CRITICAL

Apache Linkis publicsercice module unrestricted upload of file

Apr 10, 2023

CVE-2023-29215
CRITICAL

Apache Linkis JDBC EngineCon has a deserialization command execution

Apr 10, 2023

CVE-2022-44644
MEDIUM

Apache Linkis (incubating): The DatasourceManager module has a Local File Read Vulnerability

Jan 31, 2023

CVE-2022-44645
HIGH

Apache Linkis (incubating): The DatasourceManager module has a serialization attack vulnerability

Jan 31, 2023

CVE-2022-39944
HIGH

The Apache Linkis JDBC EngineConn module has a RCE Vulnerability

Oct 26, 2022

Showing 1 to 18 of 18 CVEs