CyberSec.Space Logo
Back to CVE Browser

CVE-2025-54981

HIGH
7.5
CVSS Severity Score
EPSS Score0.0000%
EPSS Percentile0.00th
Published2025-12-12
Last Modified2026-06-17
Data SourcesNVD

Vulnerability Description

Weak Encryption Algorithm in StreamPark, The use of an AES cipher in ECB mode and a weak random number generator for encrypting sensitive data, including JWT tokens, may have risked exposing sensitive authentication data This issue affects Apache StreamPark: from 2.0.0 before 2.1.7. Users are recommended to upgrade to version 2.1.7, which fixes the issue.

Affected Platforms (CPE)

📦
Apache

Streampark

>= 2.0.0 and < 2.1.7

References & Advisories

Related Vulnerabilities