Количество 2
Количество 2
CVE-2022-46870
An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Apache Zeppelin allows logged-in users to execute arbitrary javascript in other users' browsers. This issue affects Apache Zeppelin before 0.8.2. Users are recommended to upgrade to a supported version of Zeppelin.
GHSA-9p8j-hrgf-jc2g
Apache Zeppelin Cross-site Scripting vulnerability
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-46870 An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Apache Zeppelin allows logged-in users to execute arbitrary javascript in other users' browsers. This issue affects Apache Zeppelin before 0.8.2. Users are recommended to upgrade to a supported version of Zeppelin. | CVSS3: 5.4 | 13% Средний | около 3 лет назад | |
GHSA-9p8j-hrgf-jc2g Apache Zeppelin Cross-site Scripting vulnerability | CVSS3: 5.4 | 13% Средний | около 3 лет назад |
Уязвимостей на страницу