NA

CVE-2021-28656

Published: 09/04/2024 Updated: 09/04/2024

Vulnerability Summary

Cross-Site Request Forgery (CSRF) vulnerability in Credential page of Apache Zeppelin allows an malicious user to submit malicious request. This issue affects Apache Zeppelin Apache Zeppelin version 0.9.0 and prior versions.

Mailing Lists

<!--X-Body-Begin--> <!--X-User-Header--> oss-sec mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> CVE-2021-28656: Apache Zeppelin: CSRF vulnerability in the Credentials page <!--X-Subject-Header-End--> <!--X-Head-of-Message- ...