Логотип exploitDog
bind:CVE-2022-46870
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-46870

Количество 2

Количество 2

nvd логотип

CVE-2022-46870

около 3 лет назад

An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Apache Zeppelin allows logged-in users to execute arbitrary javascript in other users' browsers. This issue affects Apache Zeppelin before 0.8.2. Users are recommended to upgrade to a supported version of Zeppelin.

CVSS3: 5.4
EPSS: Средний
github логотип

GHSA-9p8j-hrgf-jc2g

около 3 лет назад

Apache Zeppelin Cross-site Scripting vulnerability

CVSS3: 5.4
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-46870

An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Apache Zeppelin allows logged-in users to execute arbitrary javascript in other users' browsers. This issue affects Apache Zeppelin before 0.8.2. Users are recommended to upgrade to a supported version of Zeppelin.

CVSS3: 5.4
13%
Средний
около 3 лет назад
github логотип
GHSA-9p8j-hrgf-jc2g

Apache Zeppelin Cross-site Scripting vulnerability

CVSS3: 5.4
13%
Средний
около 3 лет назад

Уязвимостей на страницу