Количество 4
Количество 4
CVE-2022-31777
A stored cross-site scripting (XSS) vulnerability in Apache Spark 3.2.1 and earlier, and 3.3.0, allows remote attackers to execute arbitrary JavaScript in the web browser of a user, by including a malicious payload into the logs which would be returned in logs rendered in the UI.
CVE-2022-31777
A stored cross-site scripting (XSS) vulnerability in Apache Spark 3.2.1 and earlier, and 3.3.0, allows remote attackers to execute arbitrary JavaScript in the web browser of a user, by including a malicious payload into the logs which would be returned in logs rendered in the UI.
CVE-2022-31777
A stored cross-site scripting (XSS) vulnerability in Apache Spark 3.2. ...
GHSA-43xg-8wmj-cw8h
Apache Spark vulnerable to Log Injection
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-31777 A stored cross-site scripting (XSS) vulnerability in Apache Spark 3.2.1 and earlier, and 3.3.0, allows remote attackers to execute arbitrary JavaScript in the web browser of a user, by including a malicious payload into the logs which would be returned in logs rendered in the UI. | CVSS3: 5.4 | 0% Низкий | больше 3 лет назад | |
CVE-2022-31777 A stored cross-site scripting (XSS) vulnerability in Apache Spark 3.2.1 and earlier, and 3.3.0, allows remote attackers to execute arbitrary JavaScript in the web browser of a user, by including a malicious payload into the logs which would be returned in logs rendered in the UI. | CVSS3: 5.4 | 0% Низкий | больше 3 лет назад | |
CVE-2022-31777 A stored cross-site scripting (XSS) vulnerability in Apache Spark 3.2. ... | CVSS3: 5.4 | 0% Низкий | больше 3 лет назад | |
GHSA-43xg-8wmj-cw8h Apache Spark vulnerable to Log Injection | CVSS3: 5.4 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу