Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 2

Количество 2

nvd логотип

CVE-2024-51775

около 1 года назад

Missing Origin Validation in WebSockets vulnerability in Apache Zeppelin. The attacker could access the Zeppelin server from another origin without any restriction, and get internal information about paragraphs.  This issue affects Apache Zeppelin: from 0.11.1 before 0.12.0. Users are recommended to upgrade to version 0.12.0, which fixes the issue.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-xg8j-j6vp-6h5w

около 1 года назад

Apache Zeppelin: Missing Origin Validation in WebSockets vulnerability

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-51775

Missing Origin Validation in WebSockets vulnerability in Apache Zeppelin. The attacker could access the Zeppelin server from another origin without any restriction, and get internal information about paragraphs.  This issue affects Apache Zeppelin: from 0.11.1 before 0.12.0. Users are recommended to upgrade to version 0.12.0, which fixes the issue.

CVSS3: 5.3
0%
Низкий
около 1 года назад
github логотип
GHSA-xg8j-j6vp-6h5w

Apache Zeppelin: Missing Origin Validation in WebSockets vulnerability

0%
Низкий
около 1 года назад

Уязвимостей на страницу