logo

Critical Apache StreamPipes Vulnerability Allows Attackers to Gain Admin Control

ID: 0fd88918-634c-5563-83c9-59e0b073bc10

STIX ID: report--0fd88918-634c-5563-83c9-59e0b073bc10

Feed Name: Cyber Press

Threat Score
75/100

Date Published: 2025-12-31

Date Updated: 2026-04-19

Author: AnuPriya

...
...

**Apache StreamPipes CVE-2025-47411:** A critical privilege-escalation flaw in StreamPipes (0.69.0–0.97.0) lets attackers with valid non-admin accounts manipulate JWT-based user ID assignment to assume administrator credentials and gain full control; Apache recommends immediate upgrade to 0.98.0 and interim network/access controls and monitoring to mitigate risk.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.