Junglewise Threat Intelligence

eKuiper /config/uploads API arbitrary file writing may lead to RCE

Severity: medium · CVSS 4 · Published 2025-07-03

Technologies: github.com/lf-edge/ekuiper (Go), github.com/lf-edge/ekuiper/v2 (Go). Vendors: Go.

Executive brief

eKuiper /config/uploads API arbitrary file writing may lead to RCE

Affected products

  • Go github.com/lf-edge/ekuiper
  • Go github.com/lf-edge/ekuiper/v2

Related threats