VYPR
High severity8.8NVD Advisory· Published Feb 27, 2024· Updated Jun 17, 2026

CVE-2023-50379

CVE-2023-50379

Description

Malicious code injection in Apache Ambari in prior to 2.7.8. Users are recommended to upgrade to version 2.7.8, which fixes this issue.

Impact: A Cluster Operator can manipulate the request by adding a malicious code injection and gain a root over the cluster main host.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
org.apache.ambari.contrib.views:ambari-contrib-viewsMaven
>= 2.7.0, < 2.7.82.7.8

Affected products

3

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.