CVE-2024-31867 Information
Apr 10, 2024
cve
Description
Improper Input Validation vulnerability in Apache Zeppelin.
The attackers can execute malicious queries by setting improper configuration properties to LDAP search filter. This issue affects Apache Zeppelin: from 0.8.2 before 0.11.1.
Users are recommended to upgrade to version 0.11.1 which fixes the issue.
Reference
https://github.com/apache/zeppelin/pull/4714 https://lists.apache.org/thread/s4scw8bxdhrjs0kg0lhb68xqd8y9lrtf
Share on: