Description
Improper Authentication vulnerability in Apache Software Foundation Apache IoTDB.This issue affects Apache IoTDB Grafana Connector: from 0.13.0 through 0.13.3. Attackers could login without authorization. This is fixed in 0.13.4.
Remediation
References
https://lists.apache.org/thread/3dgvzgstycf8b5hyf4z3n7cqdhcyln3l
Related Vulnerabilities
CVE-2022-37616 Vulnerability in maven package org.webjars.npm:xmldom__xmldom
CVE-2020-28052 Vulnerability in maven package org.bouncycastle:bcprov-ext-jdk14
CVE-2023-31103 Vulnerability in maven package org.apache.inlong:manager-pojo
CVE-2023-40336 Vulnerability in maven package org.jenkins-ci.plugins:cloudbees-folder
CVE-2021-31408 Vulnerability in maven package com.vaadin:flow-client