Описание
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in Apache InLong.This issue affects Apache InLong: from 1.4.0 through 1.8.0, the attacker can create misleading or false log records, making it harder to audit and trace malicious activities. Users are advised to upgrade to Apache InLong's 1.9.0 or cherry-pick [1] to solve it.
Уязвимые конфигурации
Конфигурация 1Версия от 1.4.0 (включая) до 1.8.0 (включая)
cpe:2.3:a:apache:inlong:*:*:*:*:*:*:*:*
EPSS
Процентиль: 83%
0.01932
Низкий
7.5 High
CVSS3
Дефекты
CWE-74
Связанные уязвимости
EPSS
Процентиль: 83%
0.01932
Низкий
7.5 High
CVSS3
Дефекты
CWE-74