Stored XSS vulnerability in Edit Service Page of Apache Ranger UI in Apache Ranger Version 2.4.0.
Users are recommended to upgrade to version Apache Ranger 2.5.0, which fixes this issue.
Metrics
Affected Vendors & Products
References
History
Wed, 22 Jan 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
Tue, 21 Jan 2025 22:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Tue, 21 Jan 2025 21:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Stored XSS vulnerability in Edit Service Page of Apache Ranger UI in Apache Ranger Version 2.4.0. Users are recommended to upgrade to version Apache Ranger 2.5.0, which fixes this issue. | |
Title | Apache Ranger: Stored XSS in Edit Service page - Add logic to validate user input | |
Weaknesses | CWE-20 | |
References |
|

Status: PUBLISHED
Assigner: apache
Published:
Updated: 2025-01-22T18:52:12.206Z
Reserved: 2024-08-29T14:30:58.496Z
Link: CVE-2024-45478

Updated: 2025-01-21T22:02:48.006Z

Status : Awaiting Analysis
Published: 2025-01-21T22:15:12.137
Modified: 2025-01-22T19:15:10.113
Link: CVE-2024-45478

No data.