Skip to main content
CRITICAL

CVE-2025-30065

CVSS v3

9.8

CRITICAL

EPSS Score

43.6 %

exploit probability, as of 2026-09-25

CISA KEV

No

known exploited

Exploitation

—

SSVC status

Description

Schema parsing in the parquet-avro module of Apache Parquet 1.15.0 and previous versions allows bad actors to execute arbitrary code Users are recommended to upgrade to version 1.15.1, which fixes the issue.

Technical details

Published
2025-04-01

Frequently asked questions

What is CVE-2025-30065?

Schema parsing in the parquet-avro module of Apache Parquet 1.15.0 and previous versions allows bad actors to execute arbitrary code Users are recommended to upgrade to version 1.15.1, which fixes the issue.

Is CVE-2025-30065 actively exploited?

Active exploitation of CVE-2025-30065 has not been confirmed. Its EPSS score was 43.6% on 2026-09-25, the estimated probability of exploitation in the next 30 days.

What is the CVSS score for CVE-2025-30065?

CVE-2025-30065 has a CVSS v3 base score of 9.8 (CRITICAL severity).

Is CVE-2025-30065 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.

No credit card required · 500 free checks/month · Free API key