CVE-2025-30065Active Exploitation(apache / parquet_java)

MEDIUMCVSS 9.8 · CRITICAL

Exploitation ongoing with high activity in latest observed window (1 mentions)

Immediate actions

  • Patch apache parquet_java systems immediately
  • Assume compromise if assets are exposed

Recommended action window: Immediate (within 24h)

NVD description

Schema parsing in the parquet-avro module of Apache Parquet 1.15.0 and previous versions allows bad actors to execute arbitrary code Users are recommended to upgrade to version 1.15.1, which fixes the issue.

4.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-502

Priority

MEDIUM

Exploitation

ACTIVE

PoC

YES

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • parquet_java

Threat summary

  • Active exploitation appears in 1 classified signals
  • Patch or workaround signal is available
  • 1 mentions across 1 observed day

What's happening

  • Active exploitation reported across 1 signal
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
parquet_java

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-04-09: 1Active Exploitation · 2026-04-09: 1Patch / Workaround · 2026-04-09: 1Technical Details · 2026-04-09: 104-09
Signal classification1 categories
Active Exploitation
1100.0%
Referenced assets1 URL
Full discourse1 post
  • Mr.Rabbit@01ra66it
    Active Exploitation

    【13-year-old ActiveMQ bug now exploited for remote code execution】 Apache ActiveMQに13年前から存在していた脆弱性(CVE-2025-30065)が、現在実際に悪用されていると報じられています。 特定条件下でリモートから任意コマンド実行が可能となり、公開インスタンスが標的に。 古いバージョンや管理インターフェースの露出がリスクとなるため、パッチ適用と外部公開制御は必須。 すでに侵害前提でログや不審プロセスの確認も進めたい事案です。 #CyberSecurity #ActiveMQ #RCE #CVE202530065 #ThreatIntel https://www.bleepingcomputer.com/news/security/13-year-old-bug-in-activemq-lets-hackers-remotely-execute-commands/

    Post summary

    A 13‑year‑old ActiveMQ vulnerability (CVE‑2025‑30065) is reportedly being exploited for remote code execution in the wild, prompting urgent patching and access control measures.

    00000644
    3.5K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appapacheparquet_java---

Explore more