Unrated severityNVD Advisory· Published Jun 30, 2026· Updated Jun 30, 2026
Apache Gravitino: SQL misconfiguration can access or truncate files
CVE-2025-53648
Description
SQL misconfiguration in the Gravitino UI, in versions 1.0.0 and below, can allow a malicious user to read or truncate files. Users are recommended to upgrade to version 1.0.0, which fixes this issue.
Patches
Vulnerability mechanics
References
1- lists.apache.org/thread/s0hytcv17z52dwp5dojjjwgrtqtyh2xkmitrevendor-advisory
News mentions
0No linked articles in our index yet.