CVE-2023-24831: Apache Iotdb

Critical severity, CVSS 9.8. EPSS: 1.2% chance of exploitation in the next 30 days.

Improper Authentication vulnerability in Apache Software Foundation Apache IoTDB.This issue affects Apache IoTDB Grafana Connector: from 0.13.0 through 0.13.3. Attackers could login without authorization. This is fixed in 0.13.4.

Affected products

  • Apache Iotdb: from 0.13.0, up to and including 0.13.3

Published 2023-04-17. Last modified 2026-06-17.