CVE-2025-30065

Schema parsing in the parquet-avro module of Apache Parquet 1.15.0 and previous versions allows bad actors to execute arbitrary code Users are recommended to upgrade to version 1.15.1, which fixes the issue.
Configurations

Configuration 1 (hide)

cpe:2.3:a:apache:parquet_java:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-04-01 08:15

Updated : 2025-07-28 14:23


NVD link : CVE-2025-30065

Mitre link : CVE-2025-30065

CVE.ORG link : CVE-2025-30065


JSON object : View

Products Affected

apache

  • parquet_java
CWE
CWE-502

Deserialization of Untrusted Data