CVE-2025-30001

HIGH7.3EPSS 0.27%

Apache StreamPark contains an Incorrect Execution-Assigned Permissions vulnerability

Published: 10/10/2025Modified: 11/5/2025
Also known as:GHSA-6wwv-6mm3-pp76

Description

Incorrect Execution-Assigned Permissions vulnerability in Apache StreamPark. This issue affects Apache StreamPark: from 2.1.4 before 2.1.6. Users are recommended to upgrade to version 2.1.6, which fixes the issue. Version 2.1.6 has yet to be published in the Maven registry.

Affected packages (1)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH7.3CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

References (4)