CVE-2024-24778: Apache Streampipes

Medium severity, CVSS 6.5. EPSS: 0.7% chance of exploitation in the next 30 days.

Improper privilege management in a REST interface allowed registered users to access unauthorized resources if the resource ID was know. This issue affects Apache StreamPipes: through 0.95.1. Users are recommended to upgrade to version 0.97.0 which fixes the issue.

Affected products

  • Apache Streampipes: before 0.97.0 (fixed in 0.97.0)

Published 2025-03-03. Last modified 2026-06-17.