Apache Doris 中文技术论坛
Questions Tags Users Badges

doris-manager-24.1.2版本,Swagger API 未授权访问漏洞

Asked Dec 2, 2025 Modified Jan 1, 0001
Viewed 47
manager

目标服务存在未授权访问漏洞,通过访问URL:http://192.168.1.2:8006/swagger-resources,获取内容如下:[{"name":"default","url":"/v3/api-docs","swaggerVersion":"3.0.3","location":"/v3/api-docs"}]
该如何修复呢

edited Jan 1, 0001
harryruan3
asked Dec 2, 2025
2 Answers

更新到manager最新的版本(25.2.0)再试试

edited Jan 1, 1970
GopherWDY663
answered Dec 2, 2025

好的,谢谢,我验证下

edited Jan 1, 1970
harryruan3
answered Dec 3, 2025
Related Questions
现在Doris Mannager 需要付费了么?
1 answers
用doris manager节点信息一直报错NetworkError when attempting to fetch resource.
1 answers
manger-web-ui和fe节点启动问题
1 answers
SelectDB Enterprise Manager不开放下载了?
1 answers
SelectDB Enterprise Manager邮箱里的地址不能下载
1 answers
doris-manager-24.1.2版本,Swagger API 未授权访问漏洞
2 answers

Terms of service Privacy policy

Powered by Answer - the open-source software that powers Q&A communities.
Made with love © 2026 Apache Doris 中文技术论坛.