PYSEC-2024-98

See a problem?
Import Source
https://github.com/pypa/advisory-database/blob/main/vulns/apache-submarine/PYSEC-2024-98.yaml
JSON Data
https://api.osv.dev/v1/vulns/PYSEC-2024-98
Aliases
Published
2024-06-12T15:15:00Z
Modified
2024-09-26T17:57:00.480961Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

* UNSUPPORTED WHEN ASSIGNED * Incorrect Authorization vulnerability in Apache Submarine Server Core.

This issue affects Apache Submarine Server Core: from 0.8.0.

As this project is retired, we do not plan to release a version that fixes this issue. Users are recommended to find an alternative or restrict access to the instance to trusted users.

NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

References

Affected packages

PyPI / apache-submarine

Package

Name
apache-submarine
View open source insights on deps.dev
Purl
pkg:pypi/apache-submarine

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0.8.0

Affected versions

0.*

0.8.0