CVE-2026-63043

NONE
Updated Aug 20, 2026
Apache
Parameter Value
Affected Versions before 2.4.0.
Type CWE-23 (Relative Path Traversal)
Vendor Apache
Public PoC No

Relative Path Traversal vulnerability in Apache InLong. Arbitrary file read from the Agent host filesystem. This issue affects Apache InLong: from 2.0.0 before 2.4.0.

Users are advised to upgrade to Apache InLong's 2.4.0 or cherry-pick [1] to solve it. [1]  https://github.com/apache/inlong/pull/12146 .