Cross-Site Scripting Vulnerability in Apache Oozie Affects Users
CVE-2025-26796

Currently unrated

Key Information:

Vendor
Apache
Vendor
CVE Published:
22 March 2025

Summary

Apache Oozie is prone to a Cross-site Scripting vulnerability, which arises from improper input neutralization during web page generation. This vulnerability affects all versions of Apache Oozie. As the project is no longer actively maintained, no fixes or updates will be provided. Users are urged to seek alternative solutions or limit access to affected instances to trusted users only, to mitigate potential exploitation risks.

Affected Version(s)

Apache Oozie 0

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Nikhil Daf
.