CVE-2022-25598: Apache DolphinScheduler user registration is vulnerable to ReDoS attacks
Apache DolphinScheduler user registration is vulnerable to Regular express Denial of Service (ReDoS) attacks, Apache DolphinScheduler users should upgrade to version 2.0.5 or higher.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-25598?
CVE-2022-25598 is a vulnerability in Apache DolphinScheduler that allows for Regular express Denial of Service (ReDoS) attacks.
What is the severity of CVE-2022-25598?
CVE-2022-25598 has a severity level of high with a CVSS score of 7.5.
How does CVE-2022-25598 affect Apache DolphinScheduler?
CVE-2022-25598 affects Apache DolphinScheduler by making the user registration process vulnerable to ReDoS attacks.
How can I fix CVE-2022-25598?
To fix CVE-2022-25598, users of Apache DolphinScheduler should upgrade to version 2.0.5 or higher.
Where can I find more information about CVE-2022-25598?
You can find more information about CVE-2022-25598 on the Apache DolphinScheduler mailing list at [link](https://lists.apache.org/thread/hwnw7xr969sg5nv84wz75nfr2c76fl93).