Apache Product Security Update Advisory (CVE-2025-30065)
Overview
We have released security updates to fix vulnerabilities in Apache products. Users of affected products are advised to update to the latest version.
Affected Products
CVE-2025-30065
Apache Parquet Java 1.15.0 and earlier versions
Resolved Vulnerabilities
Untrusted Data Deserialization Vulnerability (CVE-2025-30065)
Vulnerability Patches
Vulnerability Patches have been made available in the latest update. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
CVE-2025-30065
Apache Parquet Java version 1.15.1
References
[1] [ANNOUNCEMENT] Apache Parquet Java 1.15.1
https://lists.apache.org/thread/okzqb3kn479gqzxm21gg5vqr35om9gw5