TROYANOSYVIRUS
Voltar para CVEs

CVE-2025-62233

N/A

Descricao

Deserialization of Untrusted Data vulnerability in Apache DolphinScheduler RPC module. This issue affects Apache DolphinScheduler:  Version >= 3.2.0 and < 3.3.1. Attackers who can access the Master or Worker nodes can compromise the system by creating a StandardRpcRequest, injecting a malicious class type into it, and sending RPC requests to the DolphinScheduler Master/Worker nodes. Users are recommended to upgrade to version [3.3.1], which fixes the issue.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado4/24/2026
Ultima modificacao4/24/2026
Fontenvd
Avistamentos honeypot0

Fraquezas (CWE)

CWE-502

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.