QID 981809
QID 981809: Java (maven) Security Update for org.apache.zeppelin:zeppelin (GHSA-c538-924g-99q4)
Apache Zeppelin prior to 0.7.3 was vulnerable to session fixation which allowed an attacker to hijack a valid user session. Issue was reported by "stone lone".
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-c538-924g-99q4 for updates pertaining to this vulnerability.
Vendor References
- GHSA-c538-924g-99q4 -
github.com/advisories/GHSA-c538-924g-99q4
CVEs related to QID 981809
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-c538-924g-99q4 | org.apache.zeppelin:zeppelin |
|