Known Vulnerabilities for Apache Zeppelin by Apache Software Foundation
Listed below are 3 of the newest known vulnerabilities associated with "Apache Zeppelin" by "Apache Software Foundation".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-44617 json | LDAP filter injection vulnerability in Apache Zeppelin. LdapRealm used RFC 4514 distinguished-name escaping when constructing... | Not Provided | 2026-07-30 | 2026-07-30 |
| CVE-2026-44616 json | LDAP injection vulnerability in Apache Zeppelin. ActiveDirectoryGroupRealm constructed LDAP search filters without escaping u... | Not Provided | 2026-07-30 | 2026-07-30 |
| CVE-2026-44613 json | Cross-Site Request Forgery (CSRF) vulnerability in Apache Zeppelin. The default CORS configuration allowed cross-origin state... | Not Provided | 2026-07-30 | 2026-07-30 |