Skip to main content

Re: Kafka4 commons-beanutils:1.9.4

Hi Sachin,

Please check KAFKA-19359 <https://issues.apache.org/jira/browse/KAFKA-19359>
for more info.

Thanks.
Luke

On Thu, Jun 26, 2025 at 5:44 PM Sachin Jangle
<sachin.jangle@oracle.com.invalid> wrote:

> Hi,
>
> A CVE-2025-48734, has been identified in the third-party library
> commons-beanutils version 1.9.4.
> Requesting confirmation on the following:
>
> * Is a fix available in a later version of kafka4 ?
>
> * If not, is there any recommended workaround or mitigation for the
> current version?
> Thanks,
> Sachin Jangle
>

Comments