Skip to main content

Insufficient Verification of Data Authenticity

CVE-2023-43666

Severity Medium
Score 6.5/10

Summary

Insufficient Verification of Data Authenticity vulnerability in Apache InLong. This issue affects Apache InLong in versions 1.4.0-RC0 through 1.8.0-RC1, the General user can view all user data like the Admin account. Users are advised to upgrade.

  • LOW
  • NETWORK
  • NONE
  • UNCHANGED
  • NONE
  • LOW
  • HIGH
  • NONE

CWE-345 - Insufficient Verification of Data Authenticity

The software does not sufficiently verify the origin or authenticity of data, in a way that causes it to accept invalid data.

Advisory Timeline

  • Published