Loading market data...
← Back to CVE feed

CVE-2026-63038

UNKNOWN View on NVD ↗

Description

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache InLong. This allows an attacker to inject arbitrary SQL code through the dbName, tableName, schemaName, and username parameters.  This issue affects Apache InLong: from 2.0.0 before 2.4.0. Users are advised to upgrade to Apache InLong's 2.4.0 or cherry-pick [1] to solve it. [1]  https://github.com/apache/inlong/issues/12135 .

Published: Aug 20, 2026 16:17 UTC Modified: Aug 20, 2026 17:19 UTC