Executive brief
eKuiper /config/uploads API arbitrary file writing may lead to RCE
Affected products
- Go github.com/lf-edge/ekuiper
- Go github.com/lf-edge/ekuiper/v2
Junglewise Threat Intelligence
Severity: medium · CVSS 4 · Published 2025-07-03
Technologies: github.com/lf-edge/ekuiper (Go), github.com/lf-edge/ekuiper/v2 (Go). Vendors: Go.
eKuiper /config/uploads API arbitrary file writing may lead to RCE