CVE Database
/

CVE-2022-43766

Back to search

CVE-2022-43766

Published: Oct 26, 2022

Modified: May 7, 2025

PUBLISHED

Description

Apache IoTDB version 0.12.2 to 0.12.6, 0.13.0 to 0.13.2 are vulnerable to a Denial of Service attack when accepting untrusted patterns for REGEXP queries with Java 8. Users should upgrade to 0.13.3 which addresses this issue or use a later version of Java to avoid it.

VendorProductVersions

Apache Software Foundation

Apache IoTDB

affected
unspecified - <= 0.13.2
affected
0.12.2 - < unspecified

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now