Improper Input Validation Vulnerability Affects Apache Zeppelin SAP
CVE-2022-47894
Currently unrated
Summary
An improper input validation vulnerability exists in the Apache Zeppelin SAP component, impacting versions from 0.8.0 up to, but not including, 0.11.0. This issue arises due to insufficient checks on user input, which could lead to unintended behavior within the application. Since the Apache Zeppelin SAP project has been retired and is no longer maintained, no patches or updates will be released to address this vulnerability. Users are advised to either migrate to alternative solutions or limit access to the affected instances to only trusted users, thereby mitigating potential security risks.
Affected Version(s)
Apache Zeppelin SAP 0.8.0 < 0.11.0
References
Timeline
Vulnerability published
Vulnerability Reserved
Credit
kuiplatain@knownsec 404 Team