Authentication bypass vulnerability in Apache Zeppelin allows an attacker to bypass Zeppelin authentication mechanism to act as another user. This issue affects Apache Zeppelin Apache Zeppelin version 0.9.0 and prior versions.
Advisories
Source ID Title
EUVD EUVD EUVD-2021-2014 Authentication bypass vulnerability in Apache Zeppelin allows an attacker to bypass Zeppelin authentication mechanism to act as another user. This issue affects Apache Zeppelin Apache Zeppelin version 0.9.0 and prior versions.
Github GHSA Github GHSA GHSA-87p2-cvhq-q4mv Authentication bypass in Apache Zeppelin
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: apache

Published:

Updated: 2024-08-04T12:32:14.441Z

Reserved: 2020-06-08T00:00:00

Link: CVE-2020-13929

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-09-02T17:15:07.860

Modified: 2024-11-21T05:02:10.197

Link: CVE-2020-13929

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.