VYPR
High severity7.5NVD Advisory· Published Apr 28, 2023· Updated Jun 17, 2026

CVE-2023-31444

CVE-2023-31444

Description

In Talend Studio before 7.3.1-R2022-10 and 8.x before 8.0.1-R2022-09, microservices allow unauthenticated access to the Jolokia endpoint of the microservice. This allows for remote access to the JVM via the Jolokia JMX-HTTP bridge.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:talend:studio:*:*:*:*:*:*:*:*
    Range: <7.3.1-r2022-10
  • Talend/Talend Studiodescription
  • Range: <7.3.1-R2022-10, <8.0.1-R2022-09

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.