Количество 4
Количество 4
CVE-2022-31777
A stored cross-site scripting (XSS) vulnerability in Apache Spark 3.2.1 and earlier, and 3.3.0, allows remote attackers to execute arbitrary JavaScript in the web browser of a user, by including a malicious payload into the logs which would be returned in logs rendered in the UI.
CVE-2022-31777
A stored cross-site scripting (XSS) vulnerability in Apache Spark 3.2.1 and earlier, and 3.3.0, allows remote attackers to execute arbitrary JavaScript in the web browser of a user, by including a malicious payload into the logs which would be returned in logs rendered in the UI.
CVE-2022-31777
A stored cross-site scripting (XSS) vulnerability in Apache Spark 3.2. ...
GHSA-43xg-8wmj-cw8h
Apache Spark vulnerable to Log Injection
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-31777 A stored cross-site scripting (XSS) vulnerability in Apache Spark 3.2.1 and earlier, and 3.3.0, allows remote attackers to execute arbitrary JavaScript in the web browser of a user, by including a malicious payload into the logs which would be returned in logs rendered in the UI. | CVSS3: 5.4 | 2% Низкий | почти 4 года назад | |
CVE-2022-31777 A stored cross-site scripting (XSS) vulnerability in Apache Spark 3.2.1 and earlier, and 3.3.0, allows remote attackers to execute arbitrary JavaScript in the web browser of a user, by including a malicious payload into the logs which would be returned in logs rendered in the UI. | CVSS3: 5.4 | 2% Низкий | почти 4 года назад | |
CVE-2022-31777 A stored cross-site scripting (XSS) vulnerability in Apache Spark 3.2. ... | CVSS3: 5.4 | 2% Низкий | почти 4 года назад | |
GHSA-43xg-8wmj-cw8h Apache Spark vulnerable to Log Injection | CVSS3: 5.4 | 2% Низкий | почти 4 года назад |
Уязвимостей на страницу