https://seclists.org/oss-sec/2025/q1/252: CVE-2024-48944: Apache Kylin: SSRF vulnerability in the diagnosis api
Published Mar 27, 2025
·Updated
Affected Software
1 affected component
Apache kylin>=5.0.0<=5.0.1
Frequently Asked Questions
1
What is the severity of CVE-2024-48944?
The severity of CVE-2024-48944 is classified as low.
2
What versions of Apache Kylin are affected by CVE-2024-48944?
Apache Kylin versions 5.0.0 through 5.0.1 are affected by CVE-2024-48944.
3
How do I fix CVE-2024-48944?
To fix CVE-2024-48944, it is recommended to upgrade to a version of Apache Kylin that is not vulnerable.
4
What is the main issue caused by CVE-2024-48944?
CVE-2024-48944 allows an attacker to exploit the Server-Side Request Forgery (SSRF) vulnerability to access internal resources.
5
What is the impact of CVE-2024-48944 on my system?
The impact of CVE-2024-48944 may include the potential leakage of sensitive information from internal systems.