Vulnerability CVE-2024-36263


Published: 2024-06-12

Description:
** UNSUPPORTED WHEN ASSIGNED ** Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Submarine Server Core.

This issue affects Apache Submarine Server Core: all versions.

As this project is retired, we do not plan to release a version that fixes this issue. Users are recommended to find an alternative or restrict access to the instance to trusted users.

NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

Type:

CWE-89

(Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'))

 References:
https://github.com/apache/submarine/pull/1121
https://lists.apache.org/thread/8q9kbdg9gk9kpz5p8x6t7q8709l3vrmt

Copyright 2026, cxsecurity.com

 

Back to Top