Apache disclosed CVE-2026-35194, a critical remote code execution flaw in Apache Flink that allows authenticated users with query submission privileges to run arbitrary code on TaskManager nodes. The vulnerability is caused by improper escaping of user-controlled input during Flink’s SQL code-generation process, where malicious SQL can be translated into attacker-controlled Java code. Apache said the issue affects Flink 1.15.0 through 1.20.x before 1.20.4, and 2.0.0 through 2.x before 2.0.2, 2.1.2, and 2.2.1.
The flaw impacts JSON functions introduced in 1.15.0 and LIKE expressions with ESCAPE clauses introduced in 1.17.0, creating a serious risk for multi-tenant and shared environments where non-administrative users may be able to escalate access, manipulate data, compromise clusters, and move laterally. Apache credited Yaswant Katakam of Confluent InfoSec for reporting the bug, while public disclosure also highlighted the danger of SQL-to-Java code translation paths in Flink’s engine. Organizations were urged to upgrade immediately to the patched releases.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
2 events from the most recent confirmed update back to the earliest known activity.
Apache released fixed versions 1.20.4, 2.0.2, 2.1.2, and 2.2.1 to address CVE-2026-35194 and advised users to upgrade. The vulnerable ranges were identified as 1.15.0 through 1.20.x and 2.0.0 through 2.x before those releases.
On 2026-05-15, Apache publicly disclosed CVE-2026-35194, a critical remote code execution vulnerability in Flink caused by SQL injection during code generation. The issue was credited to Yaswant Katakam of Confluent InfoSec.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
3 references tracked. Mallory keeps watching after this page renders.
cybersecuritynews.com
Open sourceseclists.org
Open sourcelists.apache.org
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.