| |
Vulnerability CVE-2022-46870
Published: 2022-12-16
| Description: |
An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Apache Zeppelin allows logged-in users to execute arbitrary javascript in other users' browsers. This issue affects Apache Zeppelin before 0.8.2. Users are recommended to upgrade to a supported version of Zeppelin. |
Type:
CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'))
References: |
https://lists.apache.org/thread/gb1wdnrm1095xw6qznpsycfrht4lwbwc
|
|
|
closedb();
?>
Copyright 2026, cxsecurity.com
|
|
|