https://seclists.org/oss-sec/2024/q1/20: CVE-2023-50290: Apache Solr: Host environment variables are published via the Metrics API
Published Jan 12, 2024
·Updated
Affected Software
1 affected component
Apache SOLR
Frequently Asked Questions
1
What is the severity of CVE-2023-50290?
CVE-2023-50290 is classified as a medium severity vulnerability.
2
How do I fix CVE-2023-50290?
To remediate CVE-2023-50290, update Apache Solr to the latest version where the issue is resolved.
3
What type of vulnerability is CVE-2023-50290?
CVE-2023-50290 is a vulnerability that allows host environment variables to be published via the Metrics API.
4
What versions of Apache Solr are affected by CVE-2023-50290?
CVE-2023-50290 affects specific previous versions of Apache Solr, so check the release notes for detailed information.
5
Who is impacted by CVE-2023-50290?
Organizations and users managing Apache Solr instances are impacted by CVE-2023-50290 due to exposure of sensitive environment variables.