A vulnerability classified as critical has been found in Apache Avro Java SDK up to 1.11.4/1.12.0. Affected by this issue is some unknown functionality of the component Schema Record Generator. This manipulation causes code injection.
This vulnerability is handled as CVE-2025-33042. The attack can be initiated remotely. There is not any exploit available.
It is recommended to upgrade the affected component.