CVE-2022-26885
published 2022-11-24CVE-2022-26885: When using tasks to read config files, there is a risk of database password disclosure. We recommend you upgrade to version 2.0.6 or higher.
high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
When using tasks to read config files, there is a risk of database password disclosure. We recommend you upgrade to version 2.0.6 or higher.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | dolphinscheduler | < 2.0.6 | 2.0.6 |
| apache_software_foundation | apache_dolphinscheduler | >= Apache DolphinScheduler < 2.0.6 | 2.0.6 |