Insufficient Verification of Data Authenticity
CVE-2023-43666
Summary
Insufficient Verification of Data Authenticity vulnerability in Apache InLong. This issue affects Apache InLong in versions 1.4.0-RC0 through 1.8.0-RC1, the General user can view all user data like the Admin account. Users are advised to upgrade.
- LOW
- NETWORK
- NONE
- UNCHANGED
- NONE
- LOW
- HIGH
- NONE
CWE-345 - Insufficient Verification of Data Authenticity
The software does not sufficiently verify the origin or authenticity of data, in a way that causes it to accept invalid data.
References
Advisory Timeline
- Published