Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-6296 | In Apache Druid 0.22.1 and earlier, certain specially-crafted links result in unescaped URL parameters being sent back in HTML responses. This makes it possible to execute reflected XSS attacks. |
Github GHSA |
GHSA-8rmv-98m4-g5c6 | Apache Druid before 0.23.0 vulnerable to reflected XSS via unescaped URL parameters |
Solution
No solution given by the vendor.
Workaround
Upgrade to Druid 0.23.0 or later.
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 15 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2024-08-04T04:32:13.108Z
Reserved: 2021-12-10T00:00:00
Link: CVE-2021-44791
No data.
Status : Modified
Published: 2022-07-07T19:15:07.790
Modified: 2024-11-21T06:31:33.563
Link: CVE-2021-44791
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA