org.apache.skywalking:oap-server@7.0.0 vulnerabilities
-
latest version
9.7.0
-
latest non vulnerable version
-
first published
5 years ago
-
latest version published
5 months ago
-
licenses detected
- [6.0.0-alpha,)
-
package manager
Direct Vulnerabilities
Known vulnerabilities in the org.apache.skywalking:oap-server package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.Vulnerability | Vulnerable Version |
---|---|
org.apache.skywalking:oap-server is an APM(application performance monitor) system, designed for microservices, cloud native and container-based architectures. Affected versions of this package are vulnerable to SQL Injection. When using H2/MySQL/TiDB as Apache SkyWalking storage, the metadata query through GraphQL protocol, there is a SQL injection vulnerability, which allows to access unexpected data. How to fix SQL Injection? Upgrade |
[6.0.0,8.0.0)
|