Security Advisory

CVE-2024-47561

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-10-03 10:23:16
Last updated 2024-10-21 08:51:22
Assigner apache
CVSS score not scored
State PUBLISHED

Description

Schema parsing in the Java SDK of Apache Avro 1.11.3 and previous versions allows bad actors to execute arbitrary code. Users are recommended to upgrade to version 1.11.4  or 1.12.0, which fix this issue.