Логотип exploitDog
bind:CVE-2024-52279
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-52279

Количество 2

Количество 2

nvd логотип

CVE-2024-52279

6 месяцев назад

Improper Input Validation vulnerability in Apache Zeppelin. The fix for JDBC URL validation in CVE-2024-31864 did not account for URL encoded input. This issue affects Apache Zeppelin: from 0.11.1 before 0.12.0. Users are recommended to upgrade to version 0.12.0, which fixes the issue.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-jr43-q92q-5q82

6 месяцев назад

Apache Zeppelin: Arbitrary file read by adding malicious JDBC connection string

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-52279

Improper Input Validation vulnerability in Apache Zeppelin. The fix for JDBC URL validation in CVE-2024-31864 did not account for URL encoded input. This issue affects Apache Zeppelin: from 0.11.1 before 0.12.0. Users are recommended to upgrade to version 0.12.0, which fixes the issue.

CVSS3: 5.3
0%
Низкий
6 месяцев назад
github логотип
GHSA-jr43-q92q-5q82

Apache Zeppelin: Arbitrary file read by adding malicious JDBC connection string

0%
Низкий
6 месяцев назад

Уязвимостей на страницу