VYPR

Flink Kubernetes Operator

by Apache

Source repositories

CVEs (1)

  • CVE-2026-40564May 26, 2026
    risk 0.00cvss epss

    Files or Directories Accessible to External Parties, Server-Side Request Forgery (SSRF) vulnerability in Apache Flink Kubernetes Operator. The FlinkSessionJob jarURI is currently not validated so that it points to user-owned files or addresses.  This lets a user with CR…