CVE-2022-4771 Information
Apr 06, 2023
cve
Description
Hitachi Vantara Pentaho Business Analytics Server prior to versions 9.4.0.1 and 9.3.0.2 including 8.3.x allow a malicious URL to inject content into the Pentaho User Console through session variables.