Apache Product Security Update Advisory (CVE-2025-30065)

Apache Product Security Update Advisory (CVE-2025-30065)

Overview

 

We have released security updates to fix vulnerabilities in Apache products. Users of affected products are advised to update to the latest version.
 

 

Affected Products

 

CVE-2025-30065

Apache Parquet Java 1.15.0 and earlier versions

 

 

Resolved Vulnerabilities

 

Untrusted Data Deserialization Vulnerability (CVE-2025-30065)

 

 

Vulnerability Patches
Vulnerability Patches have been made available in the latest update. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

 

 

CVE-2025-30065

Apache Parquet Java version 1.15.1

 

 

References
[1] [ANNOUNCEMENT] Apache Parquet Java 1.15.1
https://lists.apache.org/thread/okzqb3kn479gqzxm21gg5vqr35om9gw5