OpenObserve is an open-source observability platform. Starting in version 0.4.4 and prior to version 0.10.0, OpenObserve contains a cross-site scripting vulnerability in line 32 of `openobserve/web/src/views/MemberSubscription.vue`. Version 0.10.0 sanitizes incoming html.
Metrics
Affected Vendors & Products
References
History
Tue, 13 Aug 2024 14:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Openobserve
Openobserve openobserve |
|
CPEs | cpe:2.3:a:openobserve:openobserve:*:*:*:*:*:*:*:* | |
Vendors & Products |
Openobserve
Openobserve openobserve |
MITRE
Status: PUBLISHED
Assigner: GitHub_M
Published: 2024-07-25T20:22:14.726Z
Updated: 2024-08-12T20:57:41.387Z
Reserved: 2024-07-22T13:57:37.136Z
Link: CVE-2024-41809
Vulnrichment
Updated: 2024-08-02T04:46:52.701Z
NVD
Status : Modified
Published: 2024-07-25T21:15:11.310
Modified: 2024-11-21T09:33:07.010
Link: CVE-2024-41809
Redhat
No data.