CVE-2026-63015 PUBLISHED

Apache InLong: Non-template responsible persons can view template information

Assigner: apache
Reserved: 15.07.2026 Published: 20.08.2026 Updated: 20.08.2026

Uncontrolled Resource Consumption vulnerability in Apache InLong. Non-template responsible persons can view template information.

This issue affects Apache InLong: from 2.0.0 before 2.4.0.

Users are advised to upgrade to Apache InLong's 2.4.0 or cherry-pick [1] to solve it.

[1]

https://github.com/apache/inlong/pull/12093 https://github.com/apache/inlong/pull/11732

Product Status

Vendor Apache Software Foundation
Product Apache InLong
Versions Default: unaffected
  • affected from 2.0.0 to 2.4.0 (excl.)

Credits

  • Tycho Knight finder

References

Problem Types

  • CWE-400 Uncontrolled Resource Consumption CWE