CVE-2025-33042 | Apache Avro Java SDK up to 1.11.4/1.12.0 Schema Record Generator code injection
A vulnerability classified as critical has been found in Apache Avro Java SDK up to 1.11.4/1.12.0. Affected by this issue is some unknown functionality of the component Schema Record Generator. This manipulation causes code injection.
This vulnerability is handled as CVE-2025-33042. The attack can be initiated remotely. There is not any exploit available.
It is recommended to upgrade the affected component.