Critical Apache StreamPipes Vulnerability Let Attackers Seize Admin Control
ID: 69565fd1-1e01-5d17-877d-8da053ee526e
STIX ID: report--69565fd1-1e01-5d17-877d-8da053ee526e
Feed Name: cybersecurityNews.com
Threat Score
**CVE-2025-47411 — Apache StreamPipes privilege escalation:** A critical privilege escalation vulnerability in Apache StreamPipes (0.69.0–0.97.0) allows legitimate non-administrator accounts to manipulate JWT-based user ID creation and assume existing administrator identities, enabling full administrative control and potential data compromise; Apache released version 0.98.0 to address the issue and users are urged to apply the patch immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
