CVE-2021-31522
06.01.2022, 13:15
Kylin can receive user input and load any class through Class.forName(...). This issue affects Apache Kylin 2 version 2.6.6 and prior versions; Apache Kylin 3 version 3.1.2 and prior versions; Apache Kylin 4 version 4.0.0 and prior versions.
Vendor | Product | Version |
---|---|---|
apache | kylin | 2.0.0 ≤ 𝑥 ≤ 2.6.6 |
apache | kylin | 3.0.0 ≤ 𝑥 < 3.1.3 |
apache | kylin | 4.0.0 |
apache | kylin | 4.0.0:alpha |
apache | kylin | 4.0.0:beta |
𝑥
= Vulnerable software versions