Security Advisory

CVE-2025-64152

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-26 12:16:28
Last updated 2026-06-26 18:36:29
Assigner apache
CVSS score not scored
State PUBLISHED

Description

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Apache IoTDB. This issue affects Apache IoTDB: from 1.0.0 before 1.3.6, from 2.0.0 before 2.0.7. Users are recommended to upgrade to version 1.3.6 and 2.0.7, which fixes the issue.