> USN-8717-1: Apache Tika vulnerability
[DATE: 03/09/2026 10:59]
[LANGUAGE: EN]
It was discovered that Apache Tika's ISA-Tab parser incorrectly handled
file path resolution. An attacker who could place files in a directory that
Tika subsequently parses could use this issue to read arbitrary files
accessible to the Tika process and have their contents emitted into the
extracted text output.