Security Advisory

CVE-2024-41177

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-08-03 10:09:43
Last updated 2025-11-04 21:08:43
Assigner apache
CVSS score not scored
State PUBLISHED

Description

Incomplete Blacklist to Cross-Site Scripting vulnerability in Apache Zeppelin. This issue affects Apache Zeppelin: before 0.12.0. Users are recommended to upgrade to version 0.12.0, which fixes the issue.