CVE-2026-24014
Published Jul 6, 2026Apache IoTDB DataNode’s internal RPC interface for creating Trigger instances uses the uploaded Trigger JAR name to build a file path without sufficient validation. If the interna…
- evidence mentions
- 2
- Buzz score
- 21.0