VYPR

uimaDUCC

by Apache

CVEs (2)

  • CVE-2023-28935Mar 30, 2023
    risk 0.00cvss epss 0.02

    ** UNSUPPORTED WHEN ASSIGNED ** Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Apache Software Foundation Apache UIMA DUCC. When using the "Distributed UIMA Cluster Computing" (DUCC) module of Apache UIMA, an authenticated…

  • CVE-2018-8035May 1, 2019
    risk 0.00cvss epss 0.04

    This vulnerability relates to the user's browser processing of DUCC webpage input data.The javascript comprising Apache UIMA DUCC (<= 2.2.2) which runs in the user's browser does not sufficiently filter user supplied inputs, which may result in unintended execution of user…