Security Advisory

CVE-2023-33963

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-06-01 15:09:14
Last updated 2025-01-08 21:47:50
Assigner GitHub_M
State PUBLISHED

Description

DataEase is an open source data visualization and analysis tool. Prior to version 1.18.7, a deserialization vulnerability exists in the DataEase datasource, which can be exploited to execute arbitrary code. The vulnerability has been fixed in v1.18.7. There are no known workarounds aside from upgrading.