Maven package
org.apache.ambari.contrib.views/ambari-contrib-views
pkg:maven/org.apache.ambari.contrib.views/ambari-contrib-views
Vulnerabilities (1)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2023-50379 | Hig | 8.8 | >= 2.7.0, < 2.7.8 | 2.7.8 | Feb 27, 2024 | Malicious code injection in Apache Ambari in prior to 2.7.8. Users are recommended to upgrade to version 2.7.8, which fixes this issue. Impact: A Cluster Operator can manipulate the request by adding a malicious code injection and gain a root over the cluster main host. |
- affected >= 2.7.0, < 2.7.8fixed 2.7.8
Malicious code injection in Apache Ambari in prior to 2.7.8. Users are recommended to upgrade to version 2.7.8, which fixes this issue. Impact: A Cluster Operator can manipulate the request by adding a malicious code injection and gain a root over the cluster main host.