CVE-2025-24974 - DataEase Unauthenticated File Deserialization Vulnerability
CVE ID : CVE-2025-24974
Published : March 13, 2025, 5:15 p.m. | 1 hour, 7 minutes ago
Description : DataEase is an open source business intelligence and data visualization tool. Prior to version 2.10.6, authenticated users can read and deserialize arbitrary files through the background JDBC connection. The vulnerability has been fixed in v2.10.6. No known workarounds are available.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : March 13, 2025, 5:15 p.m. | 1 hour, 7 minutes ago
Description : DataEase is an open source business intelligence and data visualization tool. Prior to version 2.10.6, authenticated users can read and deserialize arbitrary files through the background JDBC connection. The vulnerability has been fixed in v2.10.6. No known workarounds are available.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...