cloudnativeapp/zeppelin
Web-based notebook that enables data-driven, interactive data analytics and collaborative documents with SQL, Scala and more.
Security Advisories for cloudnativeapp/zeppelin in helm
Potential
Moderate
7 months ago
Apache Zeppelin: XSS in the Helium module
maven
org.apache.zeppelin:zeppelin-web
Potential
Moderate
7 months ago
Apache Zeppelin: Missing Origin Validation in WebSockets vulnerability
maven
org.apache.zeppelin:zeppelin-shell
Potential
Moderate
7 months ago
Apache Zeppelin: Arbitrary file read by adding malicious JDBC connection string
maven
org.apache.zeppelin:zeppelin-jdbc
Potential
High
8 months ago
Apache Zeppelin exposes server resources to unauthenticated attackers
maven
org.apache.zeppelin:zeppelin-server, org.apache.zeppelin:zeppelin-interpreter
Potential
Moderate
almost 2 years ago
Code injection in Apache Zeppelin Shell
maven
org.apache.zeppelin:zeppelin-shell
Potential
Moderate
almost 2 years ago
Apache Zeppelin: LDAP search filter query Injection Vulnerability
maven
org.apache.zeppelin:zeppelin-server
Potential
Moderate
almost 2 years ago
Apache Zeppelin vulnerable to cross-site scripting in the helium module
maven
org.apache.zeppelin:zeppelin-interpreter
Potential
Moderate
almost 2 years ago
Apache Zeppelin: Cron arbitrary user impersonation with improper privileges
maven
org.apache.zeppelin:zeppelin-server
Potential
Critical
almost 2 years ago
Apache Zeppelin remote code execution by adding malicious JDBC connection string
maven
org.apache.zeppelin:zeppelin-jdbc
Potential
Critical
almost 2 years ago
Improper escaping in Apache Zeppelin
maven
org.apache.zeppelin:zeppelin-interpreter
Potential
Moderate
almost 2 years ago
Apache Zeppelin: Denial of service with invalid notebook name
maven
org.apache.zeppelin:zeppelin-server
Potential
Moderate
almost 2 years ago
Apache Zeppelin: Replacing other users notebook, bypassing any permissions
maven
org.apache.zeppelin:zeppelin-server
Potential
Moderate
almost 2 years ago
Apache Zeppelin SAP: connecting to a malicious SAP server allowed it to perform XXE
maven
org.apache.zeppelin:sap
Potential
Moderate
almost 2 years ago
Apache Zeppelin Path Traversal vulnerability
maven
org.apache.zeppelin:zeppelin-server