Critical Apache StreamPipes Vulnerability Allows Attackers to Gain Admin Control
ID: 0fd88918-634c-5563-83c9-59e0b073bc10
STIX ID: report--0fd88918-634c-5563-83c9-59e0b073bc10
Feed Name: Cyber Press
Threat Score
**Apache StreamPipes CVE-2025-47411:** A critical privilege-escalation flaw in StreamPipes (0.69.0–0.97.0) lets attackers with valid non-admin accounts manipulate JWT-based user ID assignment to assume administrator credentials and gain full control; Apache recommends immediate upgrade to 0.98.0 and interim network/access controls and monitoring to mitigate risk.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
