DataSourceResource.java in the SpagoBI API support in Knowage Server in KNOWAGE before 8.1.30 does not ensure that java:comp/env/jdbc/ occurs at the beginning of a JNDI Name.
{
"versions": [
{
"introduced": "0"
},
{
"fixed": "8.1.30"
}
]
}[
{
"digest": {
"length": 869.0,
"function_hash": "59208488101516746507752381081054875896"
},
"target": {
"file": "knowage-core/src/main/java/it/eng/spagobi/api/v2/DataSourceResource.java",
"function": "postDataSource"
},
"id": "CVE-2024-57971-4eadec64",
"signature_version": "v1",
"deprecated": false,
"signature_type": "Function",
"source": "https://github.com/knowagelabs/knowage-server/commit/f7d0362f737e1b0db1cc9cc95b1236d62d83dd0c"
},
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"134497073326559177954244526696616605192",
"107570737580561449693877492859155689019",
"91540732585642016803079315374272185854",
"64320293172756396265364199694787404446",
"298435162741456322691828724564236575797",
"71048550839281177856378238942711019002",
"5672213252276913936398936406620873272",
"138668927881092645776605727543087135254",
"147759593515438261541963726359283959707",
"321929858379957575696494799824570006084",
"130567396218714385648059443147177640367",
"189803273201454343178951852002988221661",
"41628062898856148088259240450128139830",
"136920129070524813425826578162467061118",
"43416712011744053982082218595424555538"
]
},
"target": {
"file": "knowage-core/src/main/java/it/eng/spagobi/api/v2/DataSourceResource.java"
},
"id": "CVE-2024-57971-a622e02d",
"signature_version": "v1",
"deprecated": false,
"signature_type": "Line",
"source": "https://github.com/knowagelabs/knowage-server/commit/f7d0362f737e1b0db1cc9cc95b1236d62d83dd0c"
},
{
"digest": {
"length": 748.0,
"function_hash": "278863201325447679562936925513585986691"
},
"target": {
"file": "knowage-core/src/main/java/it/eng/spagobi/api/v2/DataSourceResource.java",
"function": "putDataSource"
},
"id": "CVE-2024-57971-fe1416b2",
"signature_version": "v1",
"deprecated": false,
"signature_type": "Function",
"source": "https://github.com/knowagelabs/knowage-server/commit/f7d0362f737e1b0db1cc9cc95b1236d62d83dd0c"
}
]
"2026-04-12T22:13:21Z"
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-57971.json"