Junglewise Threat Intelligence

PYSEC-2022-43070 - Apache IoTDB grafana-connector version 0.13.0 contains an interface without authorization, which may expose the internal structure of databa

Severity: low · CVSS 3.1 · Published 2022-09-05

Technologies: apache-iotdb (PyPI). Vendors: PyPI.

Executive brief

Apache IoTDB grafana-connector version 0.13.0 contains an interface without authorization, which may expose the internal structure of database. Users should upgrade to version 0.13.1 which addresses this issue.

Affected products

  • PyPI apache-iotdb

Related threats