Apache Zeppelin prior to 0.8.0 had a stored XSS issue via Note permissions. Issue reported by "Josna Joseph".
Advisories
Source ID Title
EUVD EUVD EUVD-2019-0431 Apache Zeppelin prior to 0.8.0 had a stored XSS issue via Note permissions. Issue reported by "Josna Joseph".
Github GHSA Github GHSA GHSA-r2v5-5vcr-h3vq Cross-site Scripting in Apache Zeppelin
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: apache

Published:

Updated: 2024-08-05T03:59:38.883Z

Reserved: 2017-12-07T00:00:00

Link: CVE-2018-1328

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-04-23T15:29:00.497

Modified: 2024-11-21T03:59:38.150

Link: CVE-2018-1328

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses