Post from 2025-02-04 10:15:32

Apache Cassandra vulnerabilities:

CVE-2024-27137: Unrestricted deserialization of JMX authentication credentials

https://seclists.org/oss-sec/2025/q1/92

CVE-2025-24860: Network region AUTHZ bypass

https://seclists.org/oss-sec/2025/q1/94

CVE-2025-23015: Privilege escalation with ALL KEYSPACES permission

https://seclists.org/oss-sec/2025/q1/93
permalink | main