Vulnerability CVE-2023-51770


Published: 2024-02-20

Description:
Arbitrary File Read Vulnerability in Apache Dolphinscheduler.

This issue affects Apache DolphinScheduler: before 3.2.1.

We recommend users to upgrade Apache DolphinScheduler to version 3.2.1, which fixes the issue.

Type:

CWE-94

(Improper Control of Generation of Code ('Code Injection'))

 References:
https://github.com/apache/dolphinscheduler/pull/15433
https://lists.apache.org/thread/4t8bdjqnfhldh73gy9p0whlgvnnbtn7g
https://lists.apache.org/thread/gpks573kn00ofxn7n9gkg6o47d03p5rw

Copyright 2026, cxsecurity.com

 

Back to Top