UNKNOWNCVE-2026-5562
provectus kafka-ui Endpoint testexecutions validateAccess code injection
Platform
java
Component
provectus/kafka-ui
A vulnerability was identified in provectus kafka-ui up to 0.7.2. This impacts the function validateAccess of the file /api/smartfilters/testexecutions of the component Endpoint. The manipulation leads to code injection. The attack can be initiated remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.
How to fix
Actualice a una versión corregida de provectus kafka-ui. La vulnerabilidad permite la inyección de código a través de la manipulación de la función validateAccess en el endpoint /api/smartfilters/testexecutions. Consulte las notas de la versión del proveedor para obtener instrucciones específicas de actualización.
Monitor your dependencies automatically
Get notified when new vulnerabilities affect your projects. Free forever.
Start free