
CVE-2025-60012: Apache Livy: Malicious configuration can lead to unauthorized file access https://www.openwall.com/lists/oss-security/2026/03/12/1 CVE-2025-66249: Apache Livy: Unauthorized directory access (path traversal) https://www.openwall.com/lists/oss-security/2026/03/12/2 Both are "Severity: important"
Post summary
The text announces two new Apache Livy CVEs, describing the nature of the vulnerabilities (unauthorized file and directory access) and noting their importance, without providing PoCs, exploits, or patch details.



