Executive brief
LF Edge eKuiper is vulnerable to Arbitrary File Read/Write via unsanitized names and zip extraction
Affected products
- Go github.com/lf-edge/ekuiper/v2
Junglewise Threat Intelligence
Severity: medium · CVSS 4 · Published 2025-11-24
Technologies: github.com/lf-edge/ekuiper/v2 (Go). Vendors: Go.
LF Edge eKuiper is vulnerable to Arbitrary File Read/Write via unsanitized names and zip extraction