cvss7.8
how bad it is if exploited, out of 10
epss0.30%
chance of exploitation in the next 30 days
xyz score3.3
CyberXYZ composite, out of 10
fig. 01 — GHSA-m9p2-j4hg-g373, the advisory selected below
// advisories
GHSA-m9p2-j4hg-g373
HIGHCVE-2023-30601Privilege escalation when enabling FQL/Audit logs allows user with JMX access to run arbitrary commands as the user running Apache Cassandra
- Affected
- >=4.0.0, <4.0.10, >=4.1.0, <4.1.2
- Fixed in
- 4.0.10
- Published
- 2023-07-06
- Source
- github
GHSANVDMITRE
// ai model usageTracked for PyPI packages. HuggingFace models declare Python dependencies, so npm packages are not covered.
Checked 2026-09-22 at 03:50 UTC. The most recent advisory here was published 2023-07-06. Updated continuously from NVD, GHSA, OSV and CNA feeds.