Eckes :mastodon:<p>That 10.0 is wildly missused. How would you Inject malformed parquet files without a priveledged position and unauthentication and how can you exploit a object constructor without skilled hunting for gadget chains - especially if no exploits in the wild. <a href="https://zusammenkunft.net/tags/cvss" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cvss</span></a> <a href="https://zusammenkunft.net/tags/apache" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>apache</span></a> <a href="https://zusammenkunft.net/tags/parquet" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>parquet</span></a> <a href="https://zusammenkunft.net/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a> <a href="https://zusammenkunft.net/tags/exploit" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>exploit</span></a> CVE-2025-30065</p>