Exploit for CVE-2021-25646

RCE in Apache Druid via javascript filter in sampler endpoint executing arbitrary commands.

Published 25 Aug 2026Updated 25 Aug 20263 sources
CVSS 9.0 PoC CANDIDATE

Record history

Record created from the first normalized source observation.
Metadata and source references refreshed.