CISA Warns that Apache Flink Vulnerability from 4 Years Ago is Still Being Actively Exploited

Published:

spot_img

Recent Discovery of Critical Apache Flink Vulnerability and Active Exploitation by Cyber Actors

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has raised alarms over a four-year-old security flaw in Apache Flink, a popular open-source framework for stream-processing and batch-processing. The flaw, identified as CVE-2020-17519, allows unauthorized access to sensitive information due to improper access control.

CISA has added this vulnerability to its Known Exploited Vulnerabilities catalog after evidence of active exploitation was observed. The agency warns that vulnerabilities like the one in Apache Flink are frequently targeted by malicious cyber actors and pose significant risks to federal enterprises.

The flaw, present in versions 1.11.0, 1.11.1, and 1.11.2 of Apache Flink, enables remote attackers to access files on the local JobManager filesystem through specially crafted directory traversal requests. While specific details of ongoing exploitation campaigns remain unclear, the bug has been acknowledged by project maintainers and has been exploited for at least four years.

Mitigation measures have been put in place, with the Apache Software Foundation releasing patches in January 2021. CISA has mandated federal agencies to apply these patches by June 13, 2024, under the Binding Operational Directive to protect agency networks from active threats.

The discovery of this vulnerability underscores the importance of timely updates and patches for widely deployed open-source projects. Organizations are urged to follow vendor instructions for mitigations or discontinue the use of affected products if fixes are not available. This incident serves as a reminder of the constant vigilance required to safeguard against cyber threats in today’s digital landscape.

spot_img

Related articles

Recent articles

Serious Versa Concerto Vulnerabilities Allow Attackers to Escape Docker and Compromise Hosts

May 22, 2025Ravie LakshmananVulnerability / Software Security Critical Security Flaws in Versa Concerto Platform Recent investigations by cybersecurity experts have revealed significant security vulnerabilities in the...

Empowering Women: ECOWAS Retreat Celebrates Purpose and Power for International Women’s Day 2025

Celebrating 50 Years of ECOWAS: Committing to Gender Empowerment As the Economic Community of West African States (ECOWAS) marks its 50th anniversary, a significant retreat...

PumaBot: New Botnet Aims at Linux IoT Devices to Hijack SSH Credentials and Mine Cryptocurrency

New PumaBot Botnet Targets Embedded Linux IoT Devices Overview of PumaBot A new botnet named PumaBot is specifically targeting embedded Linux-based Internet of Things (IoT) devices,...

Is Your IRS Refund Check on the Dark Web? Discover What 7 On Your Side Investigates

Surge in Check Theft: How California Residents Are Being Targeted The sun might shine brightly in California, but it casts dark shadows when it comes...