Junglewise Threat Intelligence

CVE-2025-54379: GO-2025-3827 - eKuiper API endpoints handling SQL queries with user-controlled table names. in github.com/lf-edge/ekuiper

CVE-2025-54379 · Severity: medium · CVSS 4 · Published 2025-07-29

Technologies: github.com/lf-edge/ekuiper (Go), github.com/lf-edge/ekuiper/v2 (Go). Vendors: Go, PyPI.

Executive brief

eKuiper API endpoints handling SQL queries with user-controlled table names. in github.com/lf-edge/ekuiper

Affected products

  • Go github.com/lf-edge/ekuiper
  • PyPI ekuiper
  • Go github.com/lf-edge/ekuiper/v2

Related threats