Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-3265 | A script injection vulnerability was found in the Debezium database connector, where it does not properly sanitize some parameters. This flaw allows an attacker to send a malicious request to inject a parameter that may allow the viewing of unauthorized data. |
Github GHSA |
GHSA-hvw5-3mgw-7rcf | Debezium database connector has a script injection vulnerability |
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Mon, 18 Nov 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 17 Nov 2024 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | debezium: script injection via connector parameter | Debezium: script injection via connector parameter |
| First Time appeared |
Redhat
Redhat debezium Redhat integration |
|
| CPEs | cpe:/a:redhat:debezium:2 cpe:/a:redhat:integration:1 |
|
| Vendors & Products |
Redhat
Redhat debezium Redhat integration |
|
| References |
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-11-18T18:56:00.727Z
Reserved: 2023-03-15T16:15:54.277Z
Link: CVE-2023-1419
Updated: 2024-11-18T18:55:57.507Z
Status : Deferred
Published: 2024-11-17T11:15:05.593
Modified: 2026-04-15T00:35:42.020
Link: CVE-2023-1419
OpenCVE Enrichment
No data.
EUVD
Github GHSA