Users are recommended to upgrade to version 0.11.0, which fixes the issue.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-1118 | Improper Input Validation vulnerability in Apache Zeppelin when creating a new note from Zeppelin's UI.This issue affects Apache Zeppelin: from 0.10.1 before 0.11.0. Users are recommended to upgrade to version 0.11.0, which fixes the issue. |
Github GHSA |
GHSA-6623-c6mr-6737 | Apache Zeppelin: Denial of service with invalid notebook name |
Mon, 05 May 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apache
Apache zeppelin |
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:a:apache:zeppelin:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Apache
Apache zeppelin |
Thu, 13 Feb 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Input Validation vulnerability in Apache Zeppelin when creating a new note from Zeppelin's UI.This issue affects Apache Zeppelin: from 0.10.1 before 0.11.0. Users are recommended to upgrade to version 0.11.0, which fixes the issue. | Improper Input Validation vulnerability in Apache Zeppelin when creating a new note from Zeppelin's UI.This issue affects Apache Zeppelin: from 0.10.1 before 0.11.0. Users are recommended to upgrade to version 0.11.0, which fixes the issue. |
Wed, 21 Aug 2024 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2025-02-13T17:48:04.941Z
Reserved: 2024-04-06T11:50:12.789Z
Link: CVE-2024-31862
Updated: 2024-08-02T01:59:49.405Z
Status : Analyzed
Published: 2024-04-09T10:15:08.513
Modified: 2025-05-05T20:46:55.243
Link: CVE-2024-31862
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA