Back

MEDIUM

Sensitive information disclosure in KNIME Hub Web Application

Published Jun 7, 2023

Description

The Web Frontend of KNIME Business Hub before 1.4.0 allows an unauthenticated remote attacker to access internals about the application such as versions, host names, or IP addresses. No personal information or application data was exposed.

Affected products

Remediation

Vendor solution

An update to KNIME Business Hub 1.4.0 is advised.

Weaknesses (1)

References (3)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner KNIME
Published Jun 7, 2023
Updated Sep 4, 2024
Reserved May 5, 2023

CISA Vulnrichment

No data

NVD

Status Modified
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner KNIME
Published Jun 7, 2023
Updated Sep 4, 2024

GitHub

No data