Security Advisory

CVE-2025-55017

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-26 12:15:53
Last updated 2026-06-26 18:35:21
Assigner apache
CVSS score not scored
State PUBLISHED

Description

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Apache IoTDB. This issue affects Apache IoTDB: from 2.0.0 before 2.0.6, from 1.0.0 before 1.3.6. Users are recommended to upgrade to version 1.3.6 and 2.0.6, which fixes the issue.