VendorsApachelinkisall versions
Vulnerabilities

Apache Linkis

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

18CVEs
CVE-2023-29215
Apache Linkis JDBC EngineCon has a deserialization command execution
Published 2023-04-10 · Modified
9.8EPSS 0.021
CVE-2023-29216
Apache Linkis DatasourceManager module has a deserialization command execution
Published 2023-04-10 · Modified
9.8EPSS 0.021
CVE-2023-27602
Apache Linkis publicsercice module unrestricted upload of file
Published 2023-04-10 · Modified
9.8EPSS 0.020
CVE-2023-27603
Apache Linkis Mangaer module engineConn material upload exists Zip Slip issue
Published 2023-04-10 · Modified
9.8EPSS 0.018
CVE-2023-27987
Apache Linkis gateway module token authentication bypass
Published 2023-04-10 · Modified
9.1EPSS 0.008
CVE-2022-44645
Apache Linkis (incubating): The DatasourceManager module has a serialization attack vulnerability
Published 2023-01-31 · Modified
8.8EPSS 0.019
CVE-2022-39944
The Apache Linkis JDBC EngineConn module has a RCE Vulnerability
Published 2022-10-26 · Modified
8.8EPSS 0.019
CVE-2023-46801
Apache Linkis DataSource: DataSource Remote code execution vulnerability
Published 2024-07-15 · Modified
8.8EPSS 0.012
CVE-2023-49566
Apache Linkis DataSource: JDBC Datasource Module with DB2 has JNDI Injection vulnerability
Published 2024-07-15 · Modified
8.8EPSS 0.008
CVE-2024-27181
Apache Linkis Basic management services: Privilege Escalation Attack vulnerability
Published 2024-08-02 · Analyzed
8.8EPSS 0.006
CVE-2025-29847
Apache Linkis: Arbitrary File Read via Double URL Encoding Bypass
Published 2026-01-19 · Analyzed
7.5EPSS 0.009
CVE-2024-39928
Apache Linkis Spark EngineConn: Commons Lang's RandomStringUtils Random string security vulnerability
Published 2024-09-24 · Analyzed
7.5EPSS 0.006
CVE-2022-44644
Apache Linkis (incubating): The DatasourceManager module has a Local File Read Vulnerability
Published 2023-01-31 · Modified
6.5EPSS 0.012
CVE-2023-41916
Apache Linkis DataSource: DatasourceManager module has a JDBC parameter judgment logic vulnerability that allows for arbitrary file reading
Published 2024-07-15 · Modified
6.5EPSS 0.007
CVE-2025-59355
Apache Linkis: Password Exposure
Published 2026-01-19 · Analyzed
6.5EPSS 0.005
CVE-2024-45627
Apache Linkis Metadata Query Service JDBC: JDBC Datasource Module with Mysql has file read vulnerability
Published 2025-01-14 · Analyzed
5.9EPSS 0.003
CVE-2023-50740
Apache Linkis DataSource: DataSource module Oracle SQL Database Password Logged
Published 2024-03-06 · Analyzed
5.3EPSS 0.009
CVE-2024-27182
Apache Linkis Basic management services: Engine material management Arbitrary file deletion vulnerability
Published 2024-08-02 · Modified
4.9EPSS 0.007