Hi,

I have reported a vulnerability named <A RCE in apache iotdb> which is
caused by IOTDB's JEXL UDF on Oct 11, 2023. I also see that IOTDB has
already fixed it in 1.3.0. But I haven’t seen the relevant security notice
issued by IOTDB and the CVE of this vulnerability. May I know the progress
of this vulnerability?

Best Wishes And Happy New Year.

Reply via email to