CVE-2025-30065
Apache Parquet Avro Module Vulnerable to Arbitrary Code Execution
Description
Schema parsing in the parquet-avro module of Apache Parquet 1.15.0 and previous versions allows bad actors to execute arbitrary code
Users are recommended to upgrade to version 1.15.1, which fixes the issue.
Base CVSS
10
EPSS Score
0.12%
Introduced Version
1.8.0
Fix Available
1.15.1
Available Patches
Package
CVEs Fixed
Lines of Code Changed