{ "id": "CVE-2023-49109", "sourceIdentifier": "security@apache.org", "published": "2024-02-20T10:15:07.927", "lastModified": "2024-02-20T10:15:07.927", "vulnStatus": "Received", "descriptions": [ { "lang": "en", "value": "Exposure of Remote Code Execution in Apache Dolphinscheduler.\n\nThis issue affects Apache DolphinScheduler: before 3.2.1. \n\nWe recommend users to upgrade Apache DolphinScheduler to version 3.2.1, which fixes the issue. " } ], "metrics": {}, "weaknesses": [ { "source": "security@apache.org", "type": "Primary", "description": [ { "lang": "en", "value": "CWE-94" } ] } ], "references": [ { "url": "https://github.com/apache/dolphinscheduler/pull/14991", "source": "security@apache.org" }, { "url": "https://lists.apache.org/thread/5b6yq2gov0fsy9x5dkvo8ws4rr45vkn8", "source": "security@apache.org" }, { "url": "https://lists.apache.org/thread/6kgsl93vtqlbdk6otttl0d8wmlspk0m5", "source": "security@apache.org" } ] }