Skip to content

Commit 2c95c15

Browse files
authored
CVE-2025-23015 Apache Cassandra: User with MODIFY permission on ALL KEYSPACES can escalate privileges to superuser via unsafe actions CVE-2024-27137 Apache Cassandra: unrestricted deserialization of JMX authentication credentials CVE-2025-24860 Apache Cassandra: CassandraNetworkAuthorizer and CassandraCIDRAuthorizer can be bypassed allowing access to different network regions
1 parent 38fc5f3 commit 2c95c15

File tree

1 file changed

+2
-2
lines changed

1 file changed

+2
-2
lines changed

cassandra-embedded/pom.xml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -12,7 +12,7 @@
1212
* Header, with the fields enclosed by brackets [] replaced by your own identifying
1313
* information: "Portions copyright [year] [name of copyright owner]".
1414
*
15-
* Copyright 2019 Open Identity Platform Community.
15+
* Copyright 2019-2025 3A Systems LLC.
1616
-->
1717
<project xmlns="http://maven.apache.org/POM/4.0.0" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://maven.apache.org/POM/4.0.0 http://maven.apache.org/xsd/maven-4.0.0.xsd">
1818
<modelVersion>4.0.0</modelVersion>
@@ -68,7 +68,7 @@
6868
<dependency>
6969
<groupId>org.apache.cassandra</groupId>
7070
<artifactId>cassandra-all</artifactId>
71-
<version>4.1.3</version>
71+
<version>5.0.6</version>
7272
<exclusions>
7373
<exclusion>
7474
<groupId>org.lz4</groupId>

0 commit comments

Comments
 (0)