CVE-2023-31444
28.04.2023, 21:15
In Talend Studio before 7.3.1-R2022-10 and 8.x before 8.0.1-R2022-09, microservices allow unauthenticated access to the Jolokia endpoint of the microservice. This allows for remote access to the JVM via the Jolokia JMX-HTTP bridge.Enginsight
Vendor | Product | Version |
---|---|---|
talend | studio | 𝑥 < 7.3.1-r2022-10 |
talend | studio | 8.0.0 ≤ 𝑥 < 8.0.1-r2022-09 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration