Apache / Drill
6 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2023-48362 | Apache Drill: XXE Vulnerability in XML Format Reader | HIGH | 8.7 | Jul 24, 2024 |
| CVE-2019-14439 | jackson-databind: Polymorphic typing issue related to logback/JNDI | HIGH | 7.5 | Jul 30, 2019 |
| CVE-2019-0201 | zookeeper: Information disclosure in Apache ZooKeeper | MEDIUM | 5.9 | May 23, 2019 |
| CVE-2019-10241 | jetty: using specially formatted URL against DefaultServlet or ResourceHandler leads to XSS conditions | MEDIUM | 6.1 | Apr 22, 2019 |
| CVE-2017-12630 | In Apache Drill 1.11.0 and earlier when submitting form from Query page users are able to pass arbitrary script or HTML which will take effect on Profile page… | MEDIUM | 5.4 | Dec 18, 2017 |
| CVE-2010-5312 | jquery-ui: XSS vulnerability in jQuery.ui.dialog title option | MEDIUM | 6.1 | Nov 24, 2014 |
Showing 1 to 6 of 6 CVEs